MEDIUM4.8
GHSA-fcmh-7492-g4q9
z-song laravel-admin XSS via the Slug or Name on the Roles screen
Details
z-song laravel-admin 1.7.3 has XSS via the Slug or Name on the Roles screen, because of mishandling on the "Operation log" screen.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/encore/laravel-admin
No fixed version published yet for encore/laravel-admin (composer). Pin to a known-safe version or switch to an alternative.