CVE-2026-53932 – wnx/laravel-backup-restore: Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) and Improper Neutralization of Special Elements used in a Command (‘Command Injection’)

​CVE ID :CVE-2026-53932

Published : Sept. 4, 2026, 8:17 p.m. | 50 minutes ago

Description :laravel-backup-restore restores database backups made with spatie/laravel-backup. Prior to version 1.9.4, a crafted backup archive can trigger OS command injection during database restore. This issue has been patched in version 1.9.4.

Severity: 8.0 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more… To Read More Visit Read More