Known vulnerabilities in composer 1.0.0beta1

Software: composer
Version: 1.0.0beta1
Software CPE: cpe:2.3:a:getcomposer.org:composer:*:*:*:*:*:*:*:*
Total vulnerabilities: 3
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting composer version 1.0.0beta1 composer 1.0.0beta1 is affected by 3 vulnerabilities: 3 high Critical High Medium Low

Vulnerabilities (3)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU81296 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-43655
CWE-94 High
No
No
1.10.27, 2.2.21, 2.6.4 29.09.2023 SB2023092947
SB2023092956
SB2023092957
and 13 more
#VU62312 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-24828
CWE-78 High
No
No
1.10.26, 2.2.12, 2.3.5 14.04.2022 SB2022041401
SB2022042017
SB2022090517
and 7 more
#VU52777 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-29472
CWE-94 High
No
No
1.10.22, 2.0.13 30.04.2021 SB2021043007
SB2021043008
SB2021051726
and 3 more