Laravel Nova 3.7.0 - 'range' DoS
Vulnerability Description
Laravel Nova 3.7.0 contains a denial of service vulnerability that allows authenticated users to crash the application by manipulating the 'range' parameter. Attackers can send simultaneous requests with an extremely high range value to overwhelm and crash the server.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-36950
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- iqzer0
References
Affected Vendor
Laravel Holdings Inc.
View all reports →