CVE-2022-25838

Published
View on NVD ↗
CVSS v3
8.1
HIGH
CVSS v2
6.8
MEDIUM
Affected
1
PROJECT

Description

Laravel Fortify before 1.11.1 allows reuse within a short time window, thus calling into question the "OT" part of the "TOTP" concept.

Backend controllers and scaffolding for Laravel authentication.
GitHubGitHub
1.74K