Known vulnerabilities in php-pear - page 2
Vendor:
OpenAnolis
Software:
php-pear
Software CPE:
cpe:2.3:o:openanolis:php-pear:*:*:*:*:*:anolis_os:*:*
Website:
https://openanolis.cn/
Total vulnerabilities:
46
Public exploits:
8
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (46)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU112189 - NULL Pointer Dereference CVE-2025-6491 |
CWE-476 | Medium | 1.10.13-1.0.1 | 04.07.2025 |
SB2025070427 SB2025070433 SB2025070434 and 18 more |
||
| #VU105642 - Improper input validation CVE-2025-1861 |
CWE-20 | Low | 1.10.13-1.0.1 | 12.03.2025 |
SB2025031234 SB2025031232 SB2025031231 and 21 more |
||
| #VU97748 - Improper input validation CVE-2024-8925 |
CWE-20 | Medium | 1.10.13-1.0.1 | 27.09.2024 |
SB2024092724 SB2024100148 SB2024100301 and 16 more |
||
| #VU97747 - Insufficient Logging CVE-2024-9026 |
CWE-778 | Low | 1.10.13-1.0.1 | 27.09.2024 |
SB2024092724 SB2024100148 SB2024101209 and 13 more |
||
| #VU97746 - Security Features CVE-2024-8927 |
CWE-254 | Medium | 1.10.13-1.0.1 | 27.09.2024 |
SB2024092724 SB2024100148 SB2024100301 and 18 more |
||
| #VU91107 - Improper input validation CVE-2024-5458 |
CWE-20 | Medium | 1.10.13-1.0.1 | 05.06.2024 |
SB2024060501 SB2024060502 SB2024060503 and 18 more |
||
| #VU88484 - Improper Authentication CVE-2024-3096 |
CWE-287 | High | 1.10.13-1.0.1 | 11.04.2024 |
SB2024041173 SB2024041175 SB2024041176 and 25 more |
||
| #VU88483 - Security Features CVE-2024-2756 |
CWE-254 | Low | 1.10.13-1.0.1 | 11.04.2024 |
SB2024041173 SB2024041175 SB2024041176 and 24 more |
||
| #VU78978 - Memory corruption CVE-2023-3824 |
CWE-119 | Critical | 1.10.13-1, 1.10.13-1.0.1 | 06.08.2023 |
SB2023080604 SB2023081704 SB20230821142 and 32 more |
||
| #VU78977 - Improper Restriction of XML External Entity Reference ('XXE') CVE-2023-3823 |
CWE-611 | High | 1.10.13-1, 1.10.13-1.0.1 | 06.08.2023 |
SB2023080604 SB2023081704 SB20230821142 and 31 more |
||
| #VU77112 - Use of Insufficiently Random Values CVE-2023-3247 |
CWE-330 | Medium | 1.10.13-1, 1.10.13-1.0.1 | 09.06.2023 |
SB2023060919 SB2023061105 SB2023061516 and 24 more |
||
| #VU72167 - Out-of-bounds write CVE-2023-0568 |
CWE-787 | Medium | 1.10.13-1, 1.10.13-1.0.1 | 14.02.2023 |
SB2023021417 SB2023021526 SB2023022245 and 27 more |
||
| #VU72166 - Use of Insufficiently Random Values CVE-2023-0567 |
CWE-330 | Medium | 1.10.13-1, 1.10.13-1.0.1 | 14.02.2023 |
SB2023021417 SB2023021526 SB2023022245 and 23 more |
||
| #VU72165 - Improper input validation CVE-2023-0662 |
CWE-20 | Medium | 1.10.13-1 | 14.02.2023 |
SB2023021417 SB2023021526 SB2023022245 and 25 more |
||
| #VU70788 - Integer overflow CVE-2022-31631 |
CWE-190 | Medium | 1.10.13-1.0.1 | 07.01.2023 |
SB2023010702 SB2023010704 SB2023011201 and 21 more |
||
| #VU68887 - Integer overflow CVE-2022-37454 |
CWE-190 | High | 1.10.13-1.0.1 | 01.11.2022 |
SB2022110118 SB2022110119 SB2022110209 and 69 more |
||
| #VU68886 - Out-of-bounds read CVE-2022-31630 |
CWE-125 | Medium | 1.10.13-1.0.1 | 01.11.2022 |
SB2022110119 SB2022110336 SB2022110814 and 21 more |
||
| #VU67756 - Security Features CVE-2022-31629 |
CWE-254 | Low | 1.10.13-1.0.1 | 29.09.2022 |
SB2022092960 SB2022093041 SB2022101944 and 49 more |
||
| #VU67755 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2022-31628 |
CWE-835 | Medium | 1.10.13-1.0.1 | 29.09.2022 |
SB2022092960 SB2022093041 SB2022101944 and 26 more |
||
| #VU49907 - UNIX Symbolic Link (Symlink) Following CVE-2020-36193 |
CWE-61 | High | 1.9.4-23, 1.10.13-1 | 18.01.2021 |
SB2021012112 SB2021012113 SB2021012410 and 20 more |
Showing elements 21 - 40 out of 46