Skip to main content

CVE detail

CVE-2021-28254

A deserialization vulnerability in the destruct() function of Laravel v8.5.9 allows attackers to execute arbitrary commands.

CVSS 9.8 · Critical