Description

Filament is a collection of full-stack components for accelerated Laravel development. Versions 4.0.0 through 4.3.0 contain a flaw in the handling of recovery codes for app-based multi-factor authentication, allowing the same recovery code to be reused indefinitely. This issue does not affect email-based MFA. It also only applies when recovery codes are enabled. This issue is fixed in version 4.3.1.

INFO

Published Date :

2025-12-10T00:43:06.855Z

Last Modified :

2025-12-10T15:28:12.222Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-67507 vulnerability.

Vendors Products
Filamentphp
  • Filament
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-67507.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact