Количество 25
Количество 25
CVE-2026-7258
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service.
CVE-2026-7258
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service.
CVE-2026-7258
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service.
CVE-2026-7258
Out-of-bounds read in urldecode() on NetBSD
CVE-2026-7258
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before ...
GHSA-m8rr-4c36-8gq4
Out-of-bounds read in urldecode()
BDU:2026-08591
Уязвимость функции urldecode() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании
RLSA-2026:22305
Important: php:8.2 security update
RLSA-2026:22143
Important: php:8.2 security update
RLSA-2026:22142
Important: php:8.3 security update
ELSA-2026-22305
ELSA-2026-22305: php:8.2 security update (IMPORTANT)
ELSA-2026-22143
ELSA-2026-22143: php:8.2 security update (IMPORTANT)
ELSA-2026-22142
ELSA-2026-22142: php:8.3 security update (IMPORTANT)
RLSA-2026:23388
Important: php security update
ELSA-2026-23388
ELSA-2026-23388: php security update (IMPORTANT)
SUSE-SU-2026:2091-1
Security update for php7
RLSA-2026:34354
Important: php:7.4 security update
RLSA-2026:22649
Important: php8.4 security update
ELSA-2026-34354
ELSA-2026-34354: php:7.4 security update (IMPORTANT)
ELSA-2026-22649
ELSA-2026-22649: php8.4 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-7258 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-7258 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service. | CVSS3: 5.9 | 0% Низкий | 3 месяца назад | |
CVE-2026-7258 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service. | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-7258 Out-of-bounds read in urldecode() on NetBSD | 0% Низкий | 3 месяца назад | ||
CVE-2026-7258 In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before ... | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
GHSA-m8rr-4c36-8gq4 Out-of-bounds read in urldecode() | 0% Низкий | 3 месяца назад | ||
BDU:2026-08591 Уязвимость функции urldecode() интерпретатора языка программирования PHP, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
RLSA-2026:22305 Important: php:8.2 security update | около 2 месяцев назад | |||
RLSA-2026:22143 Important: php:8.2 security update | около 2 месяцев назад | |||
RLSA-2026:22142 Important: php:8.3 security update | около 2 месяцев назад | |||
ELSA-2026-22305 ELSA-2026-22305: php:8.2 security update (IMPORTANT) | около 2 месяцев назад | |||
ELSA-2026-22143 ELSA-2026-22143: php:8.2 security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-22142 ELSA-2026-22142: php:8.3 security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:23388 Important: php security update | около 2 месяцев назад | |||
ELSA-2026-23388 ELSA-2026-23388: php security update (IMPORTANT) | 15 дней назад | |||
SUSE-SU-2026:2091-1 Security update for php7 | 2 месяца назад | |||
RLSA-2026:34354 Important: php:7.4 security update | 29 дней назад | |||
RLSA-2026:22649 Important: php8.4 security update | около 2 месяцев назад | |||
ELSA-2026-34354 ELSA-2026-34354: php:7.4 security update (IMPORTANT) | 29 дней назад | |||
ELSA-2026-22649 ELSA-2026-22649: php8.4 security update (IMPORTANT) | 14 дней назад |
Уязвимостей на страницу