A critical security vulnerability, CVE-2024-52301, has been identified in Laravel, a widely used PHP framework for web applications, that allows unauthorized access and data manipulation. Laravel has released patches to rectify the flaw, and developers are strongly advised to update immediately due to the risk of data breaches. The vulnerability affects Laravel versions 7.0.0 to 11.0.0 and is expected to be actively targeted.
Microsoft Power Pages misconfigs exposing sensitive data • The Register
Private businesses and public-sector organizations are unwittingly exposing millions of people’s sensitive information to the public internet because they misconfigure Microsoft’s Power Pages website creation