IndexedVerified

Laravel Security

Laravel SAST rules aggregated across verified providers.

Fetch pack

greprules pack fetch php-laravel-security --engine opengrep
curl https://api.greprules.io/api/packs/php-laravel-security.tar.gz -o php-laravel-security.tar.gz

Included rules

CVE-2024-34697: Laravel Sanitize Rendered Viewcve-2024-34697-laravel-sanitize-rendered-viewCVE-2025-14894: Livewire Updated Files Missing Validationcve-2025-14894-livewire-updated-files-missing-validationCVE-2025-27515: Laravel Validator Static Asterisk Placeholder Cve 2025 27515cve-2025-27515-laravel-validator-static-asterisk-placeholder-cve-2025-27515CVE-2025-49132: Laravel Translation Loader Path Traversal Unvalidated Inputcve-2025-49132-laravel-translation-loader-path-traversal-unvalidated-inputCVE-2025-54068: Livewire Hydrate For Update Recursive Tuple Hydratecve-2025-54068-livewire-hydrate-for-update-recursive-tuple-hydrateCVE-2026-21446: Php Laravel Ajax Bypass Security Guardcve-2026-21446-php-laravel-ajax-bypass-security-guardCVE-2026-27591: Winter Form Context User Controlled Overridecve-2026-27591-winter-form-context-user-controlled-overrideCVE-2026-35047: Php Laravel Unrestricted File Upload To Public Pathcve-2026-35047-php-laravel-unrestricted-file-upload-to-public-pathCVE-2026-39912: Php Magic Link Token Leak In Responsecve-2026-39912-php-magic-link-token-leak-in-responseCVE-2026-40498: Php Laravel Md5 App Key Auth Tokencve-2026-40498-php-laravel-md5-app-key-auth-tokenCVE-2026-40569: Php Laravel Mass Assignment Request All Into Fillcve-2026-40569-php-laravel-mass-assignment-request-all-into-fillCVE-2026-42569: Phpvms Laravel Importer Route Group Missing Authcve-2026-42569-phpvms-laravel-importer-route-group-missing-authCVE-2026-4809: Laravel Mediable Prefer Client Mime Typecve-2026-4809-laravel-mediable-prefer-client-mime-type