Skip to content

File Validation Bypass CVE-2025-27515

Moderate
macropay-solutions published GHSA-3wgq-h4fr-cwg5 Mar 11, 2025

Package

composer macropay-solutions/laravel-crud-wizard-free (Composer)

Affected versions

< 3.4.17

Patched versions

3.4.17

Description

Impact

Medium

Patches

Version 3.4.17 fixes illuminate/validation v 8.0.0 to 11.44.0

Workarounds

Register \MacropaySolutions\LaravelCrudWizard\Providers\ValidationServiceProvider instead of Illuminate\Validation\ValidationServiceProvider::class if you are using illuminate/validation < 11.44.1

References

GHSA-78fx-h6xr-vch4

Severity

Moderate

CVE ID

CVE-2025-27515

Weaknesses

No CWEs