Количество 18
Количество 18

CVE-2025-1219
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations.

CVE-2025-1219
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations.

CVE-2025-1219
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations.

CVE-2025-1219
CVE-2025-1219
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* ...
GHSA-p3x9-6h7p-cgfc
libxml streams use wrong `content-type` header when requesting a redirected resource

BDU:2025-02829
Уязвимость функций php_libxml_input_buffer_create_filename() и php_libxml_sniff_charset_from_stream() интерпретатора языка программирования PHP, позволяющая нарушителю перенаправить пользователя на произвольный URL-адрес
ELSA-2025-7431
ELSA-2025-7431: php security update (MODERATE)

SUSE-SU-2025:1026-1
Security update for php7

SUSE-SU-2025:1025-1
Security update for php7

SUSE-SU-2025:1012-1
Security update for php8

SUSE-SU-2025:0994-1
Security update for php8
ELSA-2025-7418
ELSA-2025-7418: php:8.3 security update (IMPORTANT)
ELSA-2025-7432
ELSA-2025-7432: php:8.2 security update (MODERATE)
ELSA-2025-4263
ELSA-2025-4263: php:8.1 security update (MODERATE)

ROS-20250430-12
Множественные уязвимости php 8.3

ROS-20250430-11
Множественные уязвимости php 8.2

ROS-20250430-10
Множественные уязвимости php 8.1
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2025-1219 In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад |
![]() | CVE-2025-1219 In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations. | CVSS3: 3.7 | 0% Низкий | 3 месяца назад |
![]() | CVE-2025-1219 In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад |
![]() | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2025-1219 In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* ... | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
GHSA-p3x9-6h7p-cgfc libxml streams use wrong `content-type` header when requesting a redirected resource | 0% Низкий | 3 месяца назад | ||
![]() | BDU:2025-02829 Уязвимость функций php_libxml_input_buffer_create_filename() и php_libxml_sniff_charset_from_stream() интерпретатора языка программирования PHP, позволяющая нарушителю перенаправить пользователя на произвольный URL-адрес | CVSS3: 3.5 | 0% Низкий | 3 месяца назад |
ELSA-2025-7431 ELSA-2025-7431: php security update (MODERATE) | 29 дней назад | |||
![]() | SUSE-SU-2025:1026-1 Security update for php7 | 3 месяца назад | ||
![]() | SUSE-SU-2025:1025-1 Security update for php7 | 3 месяца назад | ||
![]() | SUSE-SU-2025:1012-1 Security update for php8 | 3 месяца назад | ||
![]() | SUSE-SU-2025:0994-1 Security update for php8 | 3 месяца назад | ||
ELSA-2025-7418 ELSA-2025-7418: php:8.3 security update (IMPORTANT) | 29 дней назад | |||
ELSA-2025-7432 ELSA-2025-7432: php:8.2 security update (MODERATE) | 29 дней назад | |||
ELSA-2025-4263 ELSA-2025-4263: php:8.1 security update (MODERATE) | около 2 месяцев назад | |||
![]() | ROS-20250430-12 Множественные уязвимости php 8.3 | CVSS3: 6.5 | около 2 месяцев назад | |
![]() | ROS-20250430-11 Множественные уязвимости php 8.2 | CVSS3: 6.5 | около 2 месяцев назад | |
![]() | ROS-20250430-10 Множественные уязвимости php 8.1 | CVSS3: 6.5 | около 2 месяцев назад |
Уязвимостей на страницу