Skip to content
RequestGuard Vulnerabilities
Pricing

illuminate/auth

The Illuminate Auth package.

Composer latest 13.32.0 MIT

Evidence path

Version, exploitation, severity

RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.

1

Latest version

13.32.0

No matching published advisory returned

2

Known exploitation

No KEV match

Checked by exact CVE identifier

3

Highest advisory severity

Moderate

3 active advisories

Check an exact version

The registry confirms the version, then OSV checks advisories for that exact value.

Published records

Advisories

3

Laravel Hijacked authentication cookies vulnerability

Affected range

ECOSYSTEM: introduced 4.0.0; fixed 4.1.26>=4.0.0,<4.0.99|>=4.1.0,<4.1.26

Fixed versions: 4.1.26

Laravel does not properly constrain the host portion of a password-reset URL

Affected range

ECOSYSTEM: introduced 5.3.0; last affected 5.3.31ECOSYSTEM: introduced 5.4.0; fixed 5.4.22>=5.3.0,<=5.3.31|>=5.4.0,<5.4.22

Fixed versions: 5.4.22

Laravel Sensitive Data Exposure

Affected range

ECOSYSTEM: introduced 0; fixed 5.5.10>=4.1.26,<=4.1.31|>=4.2.0,<=4.2.22|>=5.0.0,<=5.0.35|>=5.1.0,<=5.1.46|>=5.2.0,<=5.2.45|>=5.3.0,<=5.3.31|>=5.4.0,<=5.4.36|>=5.5.0,<5.5.10

Fixed versions: 5.5.10