UNKNOWNKNOWN EXPLOITEDRANSOMWARE: KNOWN
CVE-2021-3129
Laravel Ignition File Upload Vulnerability
Summary
Laravel Ignition contains a file upload vulnerability that allows unauthenticated remote attackers to execute malicious code due to insecure usage of file_get_contents() and file_put_contents().
References
Includes data from the CISA Known Exploited Vulnerabilities catalog.
CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.