Tag
high
advisory
Sharp Laravel Admin Panel Unrestricted File Upload Vulnerability
2 rules 1 TTP 4 IOCsThe code16/sharp Laravel admin panel package contains a vulnerability in its file upload endpoint that allows authenticated users to bypass all file type restrictions by manipulating the validation_rule parameter, potentially leading to Remote Code Execution (RCE) if the storage disk is configured to be publicly accessible.
laravel
file-upload
rce
code16/sharp
2r
1t
4i
high
advisory
code16/sharp Package Vulnerable to Path Traversal via Unsanitized File Extension
2 rules 1 TTPThe code16/sharp package is vulnerable to path traversal due to improper sanitization of file extensions, allowing authenticated attackers to manipulate file paths to write files outside the intended temporary directory or overwrite critical files.
sharp
path-traversal
web-application
php
code16/sharp
2r
1t