Advisory Database
  • Advisories
  • Dependency Scanning
  1. composer
  2. ›
  3. laravel/framework
  4. ›
  5. GHSA-crmm-hgp2-wgrp

GHSA-crmm-hgp2-wgrp: Laravel Framework: Temporary Signed URL Path Confusion

June 17, 2026

A vulnerability in Laravel’s local filesystem driver allows temporary signed URLs to be parsed ambiguously, potentially misrouting requests and bypassing expiration enforcement.

Under certain conditions, a generated temporary signed URL can be interpreted differently by the server than intended at signing time. This may cause requests to resolve to an unintended resource, and can prevent expiration from being enforced, allowing expired URLs to remain valid indefinitely.

References

  • github.com/advisories/GHSA-crmm-hgp2-wgrp
  • github.com/laravel/framework/pull/60137
  • github.com/laravel/framework/pull/60230
  • github.com/laravel/framework/pull/60350
  • github.com/laravel/framework/security/advisories/GHSA-crmm-hgp2-wgrp

Code Behaviors & Features

Detect and mitigate GHSA-crmm-hgp2-wgrp with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions before 12.61.1, all versions starting from 13.0.0 before 13.12.0

Fixed versions

  • 12.61.1
  • 13.12.0

Solution

Upgrade to versions 12.61.1, 13.12.0 or above.

Impact 4.2 MEDIUM

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N

Learn more about CVSS

Weakness

  • CWE-116: Improper Encoding or Escaping of Output

Source file

packagist/laravel/framework/GHSA-crmm-hgp2-wgrp.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Tue, 23 Jun 2026 12:23:27 +0000.