CVE-2026-57570 | Laravel-Backpack CRUD up to 6.8.14/7.0.46 HasMany/MorphMany attachManyRelation improper authorization

SecurityVulns

A vulnerability described as problematic has been identified in Laravel-Backpack CRUD up to 6.8.14/7.0.46. This issue affects the function attachManyRelation of the component HasMany/MorphMany Handler. Executing a manipulation can lead to improper authorization.

This vulnerability is registered as CVE-2026-57570. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More