Patch
CVE-2024-42485
with vRx
Introduction
Filament Excel enables excel export for Filament admin resources. The export download route /filament-excel/{path} allowed downloading any file without login when the webserver allows ../ in the URL. Patched with Version v2.3.3.
Reference: https://nvd.nist.gov/vuln/detail/CVE-2024-42485
Patching the target
To patch the vulnerable targets, it is advised to upgrade to Filament Excel version v2.3.3 or the latest version (which happens to be v2.3.3 at the time of this writing).
To update the dependency, we will leverage composer:
composer require pxlrbt/filament-excel:2.3.3
composer update ```pxlrbt/filament-excel
Read more
Read less
Patch faster and smarter
with vRx
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Trusted by 600+ customers:




Solution
Remediate faster with vRx
Patch Management
vRx automatically deploys patches across all systems, cutting patching time by 80%.
Scripting Engine
vRx’s scripting engine solves complex vulnerabilities, like log4j, with built-in or custom scripts.
Patchless Protection
vRx’s Patchless Protection secures vulnerable apps and reduces risk while maintaining functionality.

Automated Patching, Scripting, and more
Talk with our team to get a personal walkthrough
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.