CVE-2019-17050observed exploitation

CVE-2019-17050

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 1.2%
from disclosure to weapon
Published on NVDSep 30
VulnCheck+2038d
exploitation probability
1.2%top 32% of all CVEs
observed exploitation
yesVulnCheck
An issue was discovered in the Voyager package through 1.2.7 for Laravel. An attacker with admin privileges and Compass access can read or delete arbitrary files, such as the .env file. NOTE: a software maintainer has suggested a solution in which Compass is switched off in a production environment.
Affected products
n/a · n/a