CVE-2019-9081

The Illuminate component of Laravel Framework 5.7.x has a deserialization vulnerability that can lead to remote code execution if the content is controllable, related to the __destruct method of the PendingCommand class in PendingCommand.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:laravel:framework:*:*:*:*:*:*:*:*

Information

Published : 2019-02-24 17:29

Updated : 2019-02-26 15:25


NVD link : CVE-2019-9081

Mitre link : CVE-2019-9081


JSON object : View

Products Affected

laravel

  • framework
CWE
CWE-502

Deserialization of Untrusted Data