Laravel Framework: Temporary Signed URL Path Confusion (GHSA-crmm-hgp2-wgrp) and CRLF Injection in Default Email Rule (GHSA-5vg9-5847-vvmq)
FrameScan now flags two high-severity Laravel 13 issues: temporary signed URL path confusion (fixed in 13.12.0) and CRLF injection in the default email rule (fixed in 13.10.0). Upgrade promptly.