A deserialization vulnerability in the destruct() function of Laravel v8.5.9 allows attackers to execute arbitrary commands.
| Software | From | Fixed in |
|---|---|---|
laravel / laravel
|
8.5.9 | 8.5.9.x |