Where
AND
-Infinity
0

PHP PHPNULL pointer dereference in SOAP apache:Map decoder with missing <value>

Risk 31
Severity
2.9
EPSS
0.11%
First published (updated )

PHP PHPNull pointer dereference in php_mb_check_encoding() via mb_ereg_search_init()

Risk 27
Severity
2.1
EPSS
0.05%
First published (updated )

npm/uriparseruriparser 1.0.0 fixes CVE-2025-67899 (DoS, CWE-674)

Risk 17
Severity
2.9
First published (updated )

PHP PHPIn PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 s…

Risk 5
Severity
1
First published (updated )

PHP PHPPHP-FPM logs from children may be altered

Risk 14
Severity
3.3
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

debian/php5The PEAR_REST class in REST.php in PEAR in PHP through 5.6.0 allows local users to write to arbitrar…

Risk 25
Severity
3.6
First published (updated )

PHP PHPacinclude.m4, as used in the configure script in PHP 5.5.13 and earlier, allows local users to overw…

Risk 22
Severity
3.3
First published (updated )

PHP PHPpdo_sql_parser.re in the PDO extension in PHP before 5.3.14 and 5.4.x before 5.4.4 does not properly…

Risk 15
Severity
2.6
First published (updated )

PHP PHPPHP 4.4.4, 5.1.6, and other versions, when running on Apache, allows local users to modify behavior …

Risk 13
Severity
2.1
First published (updated )

PHP PHPInput Validation

Risk 13
Severity
2.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PHP PHPThe imap_body function in PHP before 4.4.4 does not implement safemode or open_basedir checks, which…

Risk 13
Severity
2.1
First published (updated )

PHP PHPThe mcrypt_create_iv function in ext/mcrypt/mcrypt.c in PHP before 4.4.7, 5.2.1, and possibly 5.0.x …

Risk 15
Severity
2.6
First published (updated )

PHP PHPInput Validation, CRLF Injection

Risk 15
Severity
2.6
First published (updated )

PHP PHPPHP 4.x up to 4.4.4 and PHP 5 up to 5.1.6 allows local users to bypass certain Apache HTTP Server ht…

Risk 25
Severity
3.6
First published (updated )

PHP PHPInteger Overflow

Risk 15
Severity
2.6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PHP PHPBuffer Overflow

Risk 16
Severity
2.6
First published (updated )

PHP PHPBuffer consumption vulnerability in the tempnam function in PHP 5.1.4 and 4.x before 4.4.3 allows lo…

Risk 13
Severity
2.1
First published (updated )

PHP PHPThe cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read file…

Risk 13
Severity
2.1
First published (updated )

PHP PHPPHP 4.4.2 and 5.1.2 allows local users to cause a crash (segmentation fault) by defining and executi…

Risk 13
Severity
2.1
First published (updated )

PHP PHPThe copy function in file.c in PHP 4.4.2 and 5.1.2 allows local users to bypass safe mode and read a…

Risk 13
Severity
2.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PHP PHPDirectory traversal vulnerability in file.c in PHP 4.4.2 and 5.1.2 allows local users to bypass open…

Risk 15
Severity
2.6
First published (updated )

PHP PHPArgument injection vulnerability in certain PHP 4.x and 5.x applications, when used with sendmail an…

Risk 22
Severity
3.2
First published (updated )

PHP PHPXSS

Risk 15
Severity
2.6
First published (updated )

PHP PHPThe apache2handler SAPI (sapi_apache2.c) in the Apache module (mod_php) for PHP 5.x before 5.1.0 fin…

Risk 13
Severity
2.1
First published (updated )

PHP PHPfopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not properly restrict access to oth…

Risk 13
Severity
2.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PHP PHPPHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile func…

Risk 13
Severity
2.1
First published (updated )

PHP PHPrfc1867.c in PHP before 5.0.2 allows local users to upload files to arbitrary locations via a PHP sc…

Risk 13
Severity
2.1
First published (updated )

PHP PHPPHP 4.0 through 4.1.1 stores session IDs in temporary files whose name contains the session ID, whic…

Risk 13
Severity
2.1
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203