VDB
Sign up
HIGH8.2

GHSA-j2gw-r24m-j2qw

Browsershot Path Traversal

Quick fix

GHSA-j2gw-r24m-j2qw — spatie/browsershot: upgrade to the fixed version with the command below.

composer require spatie/browsershot:^5.0.5

Details

Versions of the package spatie/browsershot before 5.0.5 are vulnerable to Improper Input Validation in the setHtml function, invoked by Browsershot::html(), which can be bypassed by omitting the slashes in the file URI (e.g., file:../../../../etc/passwd). This is due to missing validations of the user input that should be blocking file URI schemes (e.g., file:// and file:/) in the HTML content.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/spatie/browsershot
Introduced in: 0Fixed in: 5.0.5
Fixcomposer require spatie/browsershot:^5.0.5

References