Critical severity9.8NVD Advisory· Published Apr 19, 2023· Updated Jun 17, 2026
CVE-2021-28254
CVE-2021-28254
Description
A deserialization vulnerability in the destruct() function of Laravel v8.5.9 allows attackers to execute arbitrary commands.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
1- s1mple-top.github.io/2021/03/09/Laravel8-new-pop-chain-mining-process/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.