Medium severity5.4NVD Advisory· Published Feb 4, 2022· Updated Jun 17, 2026
CVE-2022-0472
CVE-2022-0472
Description
Unrestricted Upload of File with Dangerous Type in Packagist jsdecena/laracom prior to v2.0.9.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
jsdecena/laracomPackagist | < 2.0.9 | 2.0.9 |
Affected products
3- jsdecena/jsdecena/laracomv5Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/jsdecena/laracom/commit/256026193ce994dc4c1365e02f414d8a0cd77ae8nvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/cb5b8563-15cf-408c-9f79-4871ea0a8713nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-5q5w-mqp6-g2ghghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-0472ghsaADVISORY
News mentions
0No linked articles in our index yet.