← Back to CVE List

CVE-2024-29291

Published: 2024-04-16T23:15Z
Last Modified: 2024-11-21T09:07Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue in Laravel Framework 8 through 11 might allow a remote attacker to discover database credentials in storage/logs/laravel.log. NOTE: this is disputed by multiple third parties because the owner of a Laravel Framework installation can choose to have debugging logs, but needs to set the access control appropriately for the type of data that may be logged. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt