FileManager provides a Backpack admin interface for files and folder. Prior to 3.0.9, deserialization of untrusted data from the mimes parameter could lead to remote code execution. This vulnerability is fixed in 3.0.9.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| backpack/filemanager(Packagist) | 3.0.0 | 3.0.9 | N/A |
| backpack/filemanager(Packagist) | 0 | 2.0.2 | N/A |
CVSS Metrics