Количество 58
Количество 58
CVE-2021-21708
In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x belo ...
SUSE-SU-2022:4069-1
Security update for php7
SUSE-SU-2022:4068-1
Security update for php74
SUSE-SU-2021:3927-1
Security update for php74
GHSA-qh78-qfw9-93x9
In PHP versions 7.3.x below 7.3.33, 7.4.x below 7.4.26 and 8.0.x below 8.0.13, certain XML parsing functions, like simplexml_load_file(), URL-decode the filename passed to them. If that filename contains URL-encoded NUL character, this may cause the function to interpret this as the end of the filename, thus interpreting the filename differently from what the user intended, which may lead it to reading a different file than intended.
BDU:2022-02394
Уязвимость функции simplexml_load_file() интерпретатора PHP , позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
openSUSE-SU-2022:0847-1
Security update for php7
SUSE-SU-2022:0847-1
Security update for php7
SUSE-SU-2022:0654-1
Security update for php74
GHSA-g9qg-rg7j-whhx
In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits.
BDU:2022-05350
Уязвимость функции php_filter_float() интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код
openSUSE-SU-2021:3943-1
Recommended update for php7
openSUSE-SU-2021:1570-1
Recommended update for php7
SUSE-SU-2021:3943-1
Recommended update for php7
RLSA-2022:8197
Moderate: php security, bug fix, and enhancement update
RLSA-2022:7624
Moderate: php:8.0 security, bug fix, and enhancement update
ELSA-2022-8197
ELSA-2022-8197: php security, bug fix, and enhancement update (MODERATE)
ELSA-2022-7624
ELSA-2022-7624: php:8.0 security, bug fix, and enhancement update (MODERATE)
BDU:2024-03775
Уязвимость фреймворка Apache Maven, связанная с неправильным кодированием или экранированием вывода, позволяющая нарушителю проводить атаки внедрения кода в командную оболочку
BDU:2023-01019
Уязвимость веб-инструмента представления данных Grafana, связанная с недостатками процедуры аутентификации, позволяющая нарушителю доступ к защищаемой информации, вызвать отказ в обслуживании или повысить свои привилегии
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-21708 In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x belo ... | CVSS3: 8.2 | 3% Низкий | больше 4 лет назад | |
SUSE-SU-2022:4069-1 Security update for php7 | больше 3 лет назад | |||
SUSE-SU-2022:4068-1 Security update for php74 | больше 3 лет назад | |||
SUSE-SU-2021:3927-1 Security update for php74 | 26% Средний | больше 4 лет назад | ||
GHSA-qh78-qfw9-93x9 In PHP versions 7.3.x below 7.3.33, 7.4.x below 7.4.26 and 8.0.x below 8.0.13, certain XML parsing functions, like simplexml_load_file(), URL-decode the filename passed to them. If that filename contains URL-encoded NUL character, this may cause the function to interpret this as the end of the filename, thus interpreting the filename differently from what the user intended, which may lead it to reading a different file than intended. | CVSS3: 5.3 | 26% Средний | больше 4 лет назад | |
BDU:2022-02394 Уязвимость функции simplexml_load_file() интерпретатора PHP , позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 5.3 | 26% Средний | больше 4 лет назад | |
openSUSE-SU-2022:0847-1 Security update for php7 | 3% Низкий | больше 4 лет назад | ||
SUSE-SU-2022:0847-1 Security update for php7 | 3% Низкий | больше 4 лет назад | ||
SUSE-SU-2022:0654-1 Security update for php74 | 3% Низкий | больше 4 лет назад | ||
GHSA-g9qg-rg7j-whhx In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/max limits, if the filter fails, there is a possibility to trigger use of allocated memory after free, which can result it crashes, and potentially in overwrite of other memory chunks and RCE. This issue affects: code that uses FILTER_VALIDATE_FLOAT with min/max limits. | CVSS3: 9.8 | 3% Низкий | больше 4 лет назад | |
BDU:2022-05350 Уязвимость функции php_filter_float() интерпретатора языка программирования PHP, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 3% Низкий | больше 4 лет назад | |
openSUSE-SU-2021:3943-1 Recommended update for php7 | больше 4 лет назад | |||
openSUSE-SU-2021:1570-1 Recommended update for php7 | больше 4 лет назад | |||
SUSE-SU-2021:3943-1 Recommended update for php7 | больше 4 лет назад | |||
RLSA-2022:8197 Moderate: php security, bug fix, and enhancement update | больше 3 лет назад | |||
RLSA-2022:7624 Moderate: php:8.0 security, bug fix, and enhancement update | больше 3 лет назад | |||
ELSA-2022-8197 ELSA-2022-8197: php security, bug fix, and enhancement update (MODERATE) | больше 3 лет назад | |||
ELSA-2022-7624 ELSA-2022-7624: php:8.0 security, bug fix, and enhancement update (MODERATE) | больше 3 лет назад | |||
BDU:2024-03775 Уязвимость фреймворка Apache Maven, связанная с неправильным кодированием или экранированием вывода, позволяющая нарушителю проводить атаки внедрения кода в командную оболочку | CVSS3: 9.8 | 4% Низкий | около 4 лет назад | |
BDU:2023-01019 Уязвимость веб-инструмента представления данных Grafana, связанная с недостатками процедуры аутентификации, позволяющая нарушителю доступ к защищаемой информации, вызвать отказ в обслуживании или повысить свои привилегии | CVSS3: 9.8 | 100% Критический | почти 5 лет назад |
Уязвимостей на страницу