The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
The container bci/php-apache was updated. The following patches have been included in this update:
An update for the php:8.1 module is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of…
The container bci/php-fpm was updated. The following patches have been included in this update:
**Version 1.7.0** - Bump to PHP 7.2 minimum - Allow psr/http-message v2 - Use copy-on-write for streams created from strings ---- **Version 1.6.1** - Security …
Researchers found active exploitation of the Eval PHP WordPress plugin to deploy backdoors on target…Hackers Abuse Outdated Eval PHP WordPress Plugin To Deploy…
## [3.1.48] - 2023-03-28 ### Security - Fixed Cross site scripting vulnerability in Javascript escaping. This addresses CVE-2023-28447. ### Fixed - Output buff…
Several security issues were fixed in PHP.
Several security issues were fixed in PHP.
An update for the php:8.0 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of…
PHP could be made do crash or execute arbitrary code if it received a specially crafted input.
An update for php is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Co…
Several security issues were fixed in PHP.
An update for the php:8.0 module is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of…
**PHP version 8.1.12** (27 Oct 2022) **Core:** * Fixes segfault with Fiber on FreeBSD i386 architecture. (David Carlier) **Fileinfo:** * Fixed bug [GH-8805](ht…
**PHP version 8.0.25** (27 Oct 2022) **GD:** * Fixed bug php#81739: OOB read due to insufficient input validation in imageloadfont(). (**CVE-2022-31630**) (cmb…
An update for php is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A C…
PHP could be made to crash or run programs if it processed specially crafted data.
Several security issues were fixed in PHP.
An update for rh-php73-php is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Imp…
Template authors could inject php code by choosing a malicious {block} name or {include} file name. (CVE-2022-29221) References: - https://bugs.mageia.org/show…
Updated php-smarty packages to version 4 for php 8 compatibility and to fix security vulnerabilities. References: - https://bugs.mageia.org/show_bug.cgi?id=302…
Several security issues were fixed in PHP.
Several security issues were fixed in PHP.
PHP could be made to crash or run programs if it received specially crafted input.