Vulnerabilities > Spatie

DATE CVE VULNERABILITY TITLE RISK
2022-11-25 CVE-2022-41706 Cross-site Scripting vulnerability in Spatie Browsershot 3.57.2
Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
spatie CWE-79
8.2
2022-11-25 CVE-2022-43983 Cross-site Scripting vulnerability in Spatie Browsershot 3.57.2
Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
spatie CWE-79
8.2
2022-11-25 CVE-2022-43984 Cross-site Scripting vulnerability in Spatie Browsershot 3.57.3
Browsershot version 3.57.3 allows an external attacker to remotely obtain arbitrary local files.
network
low complexity
spatie CWE-79
8.2
2022-03-17 CVE-2021-45040 Unrestricted Upload of File with Dangerous Type vulnerability in Spatie Laravel Media Library
The Spatie media-library-pro library through 1.17.10 and 2.x through 2.1.6 for Laravel allows remote attackers to upload executable files via the uploads route.
network
low complexity
spatie CWE-434
critical
10.0
2020-12-11 CVE-2020-7790 Path Traversal vulnerability in Spatie Browsershot
This affects the package spatie/browsershot from 0.0.0.
network
low complexity
spatie CWE-22
5.0