Laravel 5.5.11 Released with a Security Fix
Published on by Paul Redmond
Laravel tagged a 5.5.11 release including a security fix. The fix is related to a possible timing attacks on the
remember_me token verification process. Read the notes below for more information.
Version v5.5.10 also introduced the
Route::respondWithRoute() method. Laravel developer Mohamed Said, the author of the new route features, wrote an article about the
Route::fallback() methods, Better 404 Responses Using Laravel 5.5.
Route::respondWithRoute($name)method (#21299, 66c5e46)
- Add missing
driverparameter to doctrine connection (#21297)
- Perform constant-time token comparison in