CVE-2024-51152: Alexstack Laravel CMS

High severity, CVSS 7.2. EPSS: 1% chance of exploitation in the next 30 days.

File Upload vulnerability in Laravel CMS v.1.4.7 and before allows a remote attacker to execute arbitrary code via the shell.php a component.

Affected products

  • Alexstack Laravel CMS: up to and including 1.4.7

Published 2024-11-08. Last modified 2026-06-17.