CVE-2025-27515
Laravel is a web application framework. When using wildcard validation to validate a given file or image field (`files.*
Laravel is a web application framework. When using wildcard validation to validate a given file or image field (files.*), a user-crafted malicious request could potentially bypass the validation rules. This vulnerability is fixed in 11.44.1 and 12.1.1.
CRITICAL · CVSS 9.8
EPSS 0.00284
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules7
YARA rules0