Количество 2
Количество 2
CVE-2024-47049
больше 1 года назад
The czim/file-handling package before 1.5.0 and 2.x before 2.3.0 (used with PHP Composer) does not properly validate URLs within makeFromUrl and makeFromAny, leading to SSRF, and to directory traversal for the reading of local files.
CVSS3: 8.2
EPSS: Низкий
GHSA-6rgh-r6j3-3223
больше 1 года назад
czim/file-handling vulnerable to SSRF and directory traversal
CVSS3: 8.2
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-47049 The czim/file-handling package before 1.5.0 and 2.x before 2.3.0 (used with PHP Composer) does not properly validate URLs within makeFromUrl and makeFromAny, leading to SSRF, and to directory traversal for the reading of local files. | CVSS3: 8.2 | 0% Низкий | больше 1 года назад | |
GHSA-6rgh-r6j3-3223 czim/file-handling vulnerable to SSRF and directory traversal | CVSS3: 8.2 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу
20