Laravel Lang Compromised with RCE Backdoor Across 700 Versions
A critical security incident has been discovered where the Laravel Lang package was compromised, with a remote code execution (RCE) backdoor planted across approximately 700 versions. The backdoor allowed attackers to execute arbitrary code on servers running the compromised package. Users are urged to immediately update to a secure version and audit their systems for signs of compromise.