| Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2335)
|
CVE-2012-2335
CWE-264
|
CWE-264
|
High
|
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3365)
|
CVE-2012-3365
CWE-264
|
CWE-264
|
Medium
|
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-1635)
|
CVE-2013-1635
CWE-264
|
CWE-264
|
High
|
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0185)
|
CVE-2014-0185
CWE-264
|
CWE-264
|
High
|
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-2348)
|
CVE-2015-2348
CWE-264
|
CWE-264
|
Medium
|
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-8994)
|
CVE-2015-8994
CWE-264
|
CWE-264
|
High
|
|
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2019-9637)
|
CVE-2019-9637
CWE-264
|
CWE-264
|
High
|
|
PHP preg_replace used on user input
|
CWE-20
|
CWE-20
|
Medium
|
|
PHP register_globals enabled
|
CWE-1108
|
CWE-1108
|
Medium
|
|
PHP register_globals Is Enabled
|
CWE-1108
|
CWE-1108
|
Medium
|
|
PHP Release of Invalid Pointer or Reference Vulnerability (CVE-2022-31625)
|
CVE-2022-31625
CWE-763
|
CWE-763
|
High
|
|
PHP Reliance on Cookies without Validation and Integrity Checking Vulnerability (CVE-2020-7070)
|
CVE-2020-7070
CWE-565
|
CWE-565
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2002-2309)
|
CVE-2002-2309
|
|
High
|
|
PHP Resource Management Errors Vulnerability (CVE-2006-1549)
|
CVE-2006-1549
|
|
Low
|
|
PHP Resource Management Errors Vulnerability (CVE-2006-1991)
|
CVE-2006-1991
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2007-3806)
|
CVE-2007-3806
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2007-4660)
|
CVE-2007-4660
|
|
High
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-1861)
|
CVE-2010-1861
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-1917)
|
CVE-2010-1917
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-2093)
|
CVE-2010-2093
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-2225)
|
CVE-2010-2225
|
|
High
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-3710)
|
CVE-2010-3710
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-4150)
|
CVE-2010-4150
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2010-4697)
|
CVE-2010-4697
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2011-1148)
|
CVE-2011-1148
|
|
High
|
|
PHP Resource Management Errors Vulnerability (CVE-2011-1468)
|
CVE-2011-1468
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2011-1657)
|
CVE-2011-1657
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2011-3267)
|
CVE-2011-3267
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2012-0781)
|
CVE-2012-0781
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2012-0789)
|
CVE-2012-0789
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2012-0830)
|
CVE-2012-0830
|
|
High
|
|
PHP Resource Management Errors Vulnerability (CVE-2014-0237)
|
CVE-2014-0237
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2014-2497)
|
CVE-2014-2497
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2014-3538)
|
CVE-2014-3538
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2015-4024)
|
CVE-2015-4024
|
|
Medium
|
|
PHP Resource Management Errors Vulnerability (CVE-2015-8877)
|
CVE-2015-8877
|
|
High
|
|
PHP Server-Side Request Forgery (SSRF) Vulnerability (CVE-2017-7272)
|
CVE-2017-7272
CWE-918
|
CWE-918
|
High
|
|
PHP Server-Side Request Forgery (SSRF) Vulnerability (CVE-2025-1220)
|
CVE-2025-1220
CWE-918
|
CWE-918
|
Medium
|
|
PHP session.use_only_cookies Is Disabled
|
CWE-598
|
CWE-598
|
Medium
|
|
PHP session.use_trans_sid enabled
|
CWE-598
|
CWE-598
|
Medium
|
|
PHP super-globals-overwrite
|
CWE-1108
|
CWE-1108
|
Medium
|
|
phpThumb() fltr[] parameter command injection vulnerability
|
CVE-2010-1598
CWE-20
|
CWE-20
|
High
|
|
PHP Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability (CVE-2004-0594)
|
CVE-2004-0594
CWE-367
|
CWE-367
|
Medium
|
|
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2011-3336)
|
CVE-2011-3336
CWE-400
|
CWE-400
|
High
|
|
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2015-9253)
|
CVE-2015-9253
CWE-400
|
CWE-400
|
Medium
|
|
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2017-9119)
|
CVE-2017-9119
CWE-400
|
CWE-400
|
Critical
|
|
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2017-11142)
|
CVE-2017-11142
CWE-400
|
CWE-400
|
High
|
|
PHP Uncontrolled Resource Consumption Vulnerability (CVE-2023-0662)
|
CVE-2023-0662
CWE-400
|
CWE-400
|
High
|
|
PHPUnit Remote Code Execution
|
CVE-2017-9841
CWE-94
|
CWE-94
|
High
|
|
PHP unserialize() used on user input
|
CWE-20
|
CWE-20
|
Medium
|
|
PHP Use After Free Vulnerability (CVE-2014-3622)
|
CVE-2014-3622
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2015-1351)
|
CVE-2015-1351
CWE-416
|
CWE-416
|
High
|
|
PHP Use After Free Vulnerability (CVE-2015-6831)
|
CVE-2015-6831
CWE-416
|
CWE-416
|
High
|
|
PHP Use After Free Vulnerability (CVE-2016-4473)
|
CVE-2016-4473
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-5771)
|
CVE-2016-5771
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-5773)
|
CVE-2016-5773
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-6290)
|
CVE-2016-6290
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-6295)
|
CVE-2016-6295
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-7413)
|
CVE-2016-7413
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-7479)
|
CVE-2016-7479
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-9137)
|
CVE-2016-9137
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-9138)
|
CVE-2016-9138
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2016-9936)
|
CVE-2016-9936
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2017-12932)
|
CVE-2017-12932
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2017-12934)
|
CVE-2017-12934
CWE-416
|
CWE-416
|
High
|
|
PHP Use After Free Vulnerability (CVE-2018-12882)
|
CVE-2018-12882
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2019-9020)
|
CVE-2019-9020
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2019-13224)
|
CVE-2019-13224
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2020-7068)
|
CVE-2020-7068
CWE-416
|
CWE-416
|
Low
|
|
PHP Use After Free Vulnerability (CVE-2021-21708)
|
CVE-2021-21708
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2024-11235)
|
CVE-2024-11235
CWE-416
|
CWE-416
|
High
|
|
PHP Use After Free Vulnerability (CVE-2026-6722)
|
CVE-2026-6722
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use After Free Vulnerability (CVE-2026-7261)
|
CVE-2026-7261
CWE-416
|
CWE-416
|
Critical
|
|
PHP Use of Externally-Controlled Format String Vulnerability (CVE-2006-0200)
|
CVE-2006-0200
CWE-134
|
CWE-134
|
Critical
|
|
PHP Use of Externally-Controlled Format String Vulnerability (CVE-2009-0754)
|
CVE-2009-0754
CWE-134
|
CWE-134
|
Low
|