{"id":"GHSA-6jvx-8ch9-j2jr","aliases":[],"url":"https://o3.security/vulnerability/GHSA-6jvx-8ch9-j2jr","summary":"Laravel Cookie serialization vulnerability","details":"Laravel 5.6.30 is a security release of Laravel and is recommended as an immediate upgrade for all users. Laravel 5.6.30 also contains a breaking change to cookie encryption and serialization logic. Refer to [laravel advisory](https://laravel.com/docs/5.6/upgrade#upgrade-5.6.30) for more details and read the notes carefully when upgrading your application.\n\n","published":"2024-05-15T22:15:07Z","modified":"2024-11-29T05:41:04.000865Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"laravel/framework","fixedVersion":"5.6.30"}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/FriendsOfPHP/security-advisories/blob/master/laravel/framework/2018-08-08-1.yaml"},{"type":"PACKAGE","url":"https://github.com/laravel/framework"},{"type":"WEB","url":"https://laravel.com/docs/5.6/upgrade#upgrade-5.6.30"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-11-29T05:41:04.000865Z"}}