Количество 59
Количество 59
ELSA-2026-47750
ELSA-2026-47750: php:7.4 security, bug fix, and enhancement update (LOW)
ELSA-2026-47749
ELSA-2026-47749: php:8.2 security, bug fix, and enhancement update (LOW)
ELSA-2026-40416
ELSA-2026-40416: php:8.2 security, bug fix, and enhancement update (LOW)
openSUSE-SU-2026:21308-1
Security update for php8
SUSE-SU-2026:3164-1
Security update for php8
CVE-2026-7260
Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
CVE-2026-7260
Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
CVE-2026-7260
Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
CVE-2026-7260
Stack overflow in phar with circular symlinks
CVE-2026-7260
Circular symbolic links in phar archives could lead to unbounded recur ...
CVE-2026-17543
Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
CVE-2026-17543
Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
CVE-2026-17543
Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
CVE-2026-17543
SQL injection in ext-pgsql via E'...' backslash breakout
CVE-2026-17543
Improper escaping of backslashes in attacker-provided parameters would ...
GHSA-vc5h-9ppw-p5f3
Stack overflow in phar with circular symlinks
GHSA-7qpv-r5mr-78m4
SQL injection in ext-pgsql via E'...' backslash breakout
RLSA-2026:56969
Important: php8.4 security, bug fix, and enhancement update
ELSA-2026-56969
ELSA-2026-56969: php8.4 security, bug fix, and enhancement update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ELSA-2026-47750 ELSA-2026-47750: php:7.4 security, bug fix, and enhancement update (LOW) | 0% Низкий | около 1 месяца назад | ||
ELSA-2026-47749 ELSA-2026-47749: php:8.2 security, bug fix, and enhancement update (LOW) | 0% Низкий | около 1 месяца назад | ||
ELSA-2026-40416 ELSA-2026-40416: php:8.2 security, bug fix, and enhancement update (LOW) | 0% Низкий | 2 месяца назад | ||
openSUSE-SU-2026:21308-1 Security update for php8 | 2 месяца назад | |||
SUSE-SU-2026:3164-1 Security update for php8 | около 2 месяцев назад | |||
CVE-2026-7260 Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9. | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-7260 Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9. | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-7260 Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9. | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-7260 Stack overflow in phar with circular symlinks | CVSS3: 5.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-7260 Circular symbolic links in phar archives could lead to unbounded recur ... | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-17543 Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-17543 Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9. | CVSS3: 7.4 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-17543 Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-17543 SQL injection in ext-pgsql via E'...' backslash breakout | CVSS3: 9.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-17543 Improper escaping of backslashes in attacker-provided parameters would ... | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-vc5h-9ppw-p5f3 Stack overflow in phar with circular symlinks | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
GHSA-7qpv-r5mr-78m4 SQL injection in ext-pgsql via E'...' backslash breakout | 0% Низкий | около 2 месяцев назад | ||
RLSA-2026:56969 Important: php8.4 security, bug fix, and enhancement update | 25 дней назад | |||
ELSA-2026-56969 ELSA-2026-56969: php8.4 security, bug fix, and enhancement update (IMPORTANT) | 27 дней назад |
Уязвимостей на страницу