This page displays vulnerability information about FreeBSD Ports.
The VUXML data was last processed by FreshPorts on 2024-04-29 10:45:39 UTC
List all Vulnerabilities, by package
List all Vulnerabilities, by date
k68These are the vulnerabilities relating to the commit you have selected:
VuXML ID | Description |
---|---|
33922b84-5f09-11ee-b63d-0897988a1c07 | Remote Code Execution via web-accessible composer Composer project reports:
Discovery 2023-09-29 Entry 2023-09-29 Modified 2023-09-30 php80-composer < 1.10.27 gt 2.0.0 lt 2.6.4 php81-composer < 1.10.27 gt 2.0.0 lt 2.6.4 php82-composer < 1.10.27 gt 2.0.0 lt 2.6.4 php83-composer < 1.10.27 gt 2.0.0 lt 2.6.4 php80-composer2 < 2.6.4 php81-composer2 < 2.6.4 php82-composer2 < 2.6.4 php83-composer2 < 2.6.4 CVE-2023-43655 https://github.com/composer/composer/security/advisories/GHSA-jm6m-4632-36hf |
24a9bd2b-bb43-11ec-af81-0897988a1c07 | Composer -- Command injection vulnerability Composer developers reports:
Discovery 2022-04-13 Entry 2022-04-13 php74-composer php80-composer php81-composer < 1.10.26 php74-composer2 php80-composer2 php81-composer2 ge 2.0.0 lt 2.2.12 ge 2.3.0 lt 2.3.5 CVE-2022-24828 https://github.com/composer/composer/security/advisories/GHSA-x7cr-6qr6-2hh6 |
33ba2241-c68e-11ee-9ef3-001999f8d30b | Composer -- Code execution and possible privilege escalation Copmposer reports:
Discovery 2024-02-08 Entry 2024-02-08 php81-composer < 2.7.0 php82-composer < 2.7.0 php83-composer < 2.7.0 CVE-2024-24821 https://github.com/composer/composer/security/advisories/GHSA-7c6p-848j-wh5h |