Laravel Lang Compromised with RCE Backdoor Across 700 Versions
A security vulnerability has been discovered in the Laravel Lang package, affecting around 700 versions. This vulnerability allows for remote code execution (RCE) through a backdoor. Developers are urged to update their packages to mitigate potential risks.
- ▪The Laravel Lang package has been compromised with a remote code execution backdoor.
- ▪Approximately 700 versions of the package are affected by this security issue.
- ▪Users are advised to update their Laravel Lang packages to the latest version to ensure security.
Opening excerpt (first ~120 words) tap to expand
.css-14sa009{display:-webkit-box;display:-webkit-flex;display:-ms-flexbox;display:flex;-webkit-flex-direction:column;-ms-flex-direction:column;flex-direction:column;height:var(--chakra-sizes-full);}.css-mb1474{position:relative;aspect-ratio:16/9;background:var(--chakra-colors-gray-950);--bg-currentcolor:var(--chakra-colors-gray-950);margin-bottom:var(--chakra-spacing-2);overflow:hidden;width:var(--chakra-sizes-full);}.css-c05207{object-fit:cover;object-position:center;position:absolute;inset:0;width:var(--chakra-sizes-full);height:var(--chakra-sizes-full);}.css-x8iw57{display:-webkit-box;display:-webkit-flex;display:-ms-flexbox;display:flex;-webkit-flex-direction:column;-ms-flex-direction:column;flex-direction:column;-webkit-flex:1;-ms-flex:1;flex:1;padding-inline:var(--chakra-spacing-4);p…
Excerpt limited to ~120 words for fair-use compliance. The full article is at Socket.