Description
Filament is a collection of full-stack components for accelerated Laravel development. Versions 4.0.0 through 4.3.0 contain a flaw in the handling of recovery codes for app-based multi-factor authentication, allowing the same recovery code to be reused indefinitely. This issue does not affect email-based MFA. It also only applies when recovery codes are enabled. This issue is fixed in version 4.3.1.
INFO
Published Date :
2025-12-10T00:43:06.855Z
Last Modified :
2025-12-10T15:28:12.222Z
Source :
GitHub_M
AFFECTED PRODUCTS
The following products are affected by CVE-2025-67507 vulnerability.
| Vendors | Products |
|---|---|
| Filamentphp |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-67507.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact