Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-7263

Опубликовано: 10 мая 2026
Источник: debian
EPSS Низкий

Описание

In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N() method may process the XML data incorrectly, causing a circular linked list in the data structure representing the XML document. This may cause subsequent processing of the XML document to enter infinite loop, causing denial of service in the processing application.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
php8.4fixed8.4.21-1package
php8.2not-affectedpackage
php7.4not-affectedpackage

Примечания

  • https://github.com/php/php-src/security/advisories/GHSA-4jhr-8w89-j733

  • https://github.com/php/php-src/commit/d43c523c48960e9ca0bf9c747e9bad8e5121edff

EPSS

Процентиль: 28%
0.00353
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 месяца назад

In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N() method may process the XML data incorrectly, causing a circular linked list in the data structure representing the XML document. This may cause subsequent processing of the XML document to enter infinite loop, causing denial of service in the processing application.

CVSS3: 7.5
redhat
3 месяца назад

In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N() method may process the XML data incorrectly, causing a circular linked list in the data structure representing the XML document. This may cause subsequent processing of the XML document to enter infinite loop, causing denial of service in the processing application.

CVSS3: 7.5
nvd
3 месяца назад

In PHP versions 8.4.* before 8.4.21 and 8.5.* before 8.5.6, DOMNode::C14N() method may process the XML data incorrectly, causing a circular linked list in the data structure representing the XML document. This may cause subsequent processing of the XML document to enter infinite loop, causing denial of service in the processing application.

github
3 месяца назад

DoS attack via DOMNode::C14N()

rocky
около 2 месяцев назад

Important: php8.4 security update

EPSS

Процентиль: 28%
0.00353
Низкий