Vulnerabilities > Spatie

DATE CVE VULNERABILITY TITLE RISK
2022-11-25 CVE-2022-41706 Cross-site Scripting vulnerability in Spatie Browsershot 3.57.2
Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
spatie CWE-79
8.2
2022-11-25 CVE-2022-43983 Cross-site Scripting vulnerability in Spatie Browsershot 3.57.2
Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
spatie CWE-79
8.2
2022-11-25 CVE-2022-43984 Cross-site Scripting vulnerability in Spatie Browsershot 3.57.3
Browsershot version 3.57.3 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
spatie CWE-79
8.2
2022-03-17 CVE-2021-45040 Unrestricted Upload of File with Dangerous Type vulnerability in Spatie Laravel Media Library 1.17.10/2.0.0/2.1.6
The Spatie media-library-pro library through 1.17.10 and 2.x through 2.1.6 for Laravel allows remote attackers to upload executable files via the uploads route.
network
low complexity
spatie CWE-434
critical
9.8