Known vulnerabilities in php8-sysvshm-debuginfo
Vendor:
SUSE
Software:
php8-sysvshm-debuginfo
Software CPE:
cpe:2.3:o:suse:php8-sysvshm-debuginfo:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
50
Public exploits:
5
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
8.2.33-150600.3.33.1
8.0.30-150400.4.73.1
8.3.33-150700.3.18.1
8.3.32-150700.3.15.1
8.0.30-150400.4.68.1
8.0.30-150400.4.65.1
8.3.31-150700.3.12.1
8.2.31-150600.3.28.1
8.4.21-160000.1.1
8.0.30-150400.4.60.1
8.3.29-150700.3.9.1
8.2.30-150600.3.25.1
8.3.23-150700.3.6.1
8.2.29-150600.3.22.1
8.2.28-150600.3.16.1
8.0.30-150400.4.54.1
8.0.30-150400.4.49.1
8.2.26-150600.3.9.1
8.2.24-150600.3.6.1
8.0.30-150400.4.46.1
8.2.20-150600.3.3.1
8.0.30-150400.4.43.1
8.0.30-150400.4.40.1
8.0.30-150400.4.37.1
8.0.29-150400.4.34.1
8.0.28-150400.4.26.1
8.0.27-150400.4.23.1
8.0.25-150400.4.17.1
8.0.24-150400.4.14.1
8.0.10-150400.4.8.1
8.0.10-150400.4.3.1
Vulnerabilities (50)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU140833 - Uncontrolled Recursion CVE-2026-7260 |
CWE-674 | Low | 8.0.30-150400.4.73.1, 8.2.33-150600.3.33.1, 8.3.33-150700.3.18.1 | 03.08.2026 |
SB2026080395 SB2026080397 SB2026080398 and 8 more |
||
| #VU140832 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2026-17543 |
CWE-89 | High | 8.0.30-150400.4.73.1, 8.2.33-150600.3.33.1, 8.3.33-150700.3.18.1 | 03.08.2026 |
SB2026080395 SB2026080397 SB2026080398 and 8 more |
||
| #VU140831 - Improper input validation CVE-2026-9672 |
CWE-20 | Medium | 8.0.30-150400.4.73.1, 8.2.33-150600.3.33.1, 8.3.33-150700.3.18.1 | 03.08.2026 |
SB2026080395 SB2026080396 SB2026080603 and 5 more |
||
| #VU137285 - Uncaught Exception CVE-2026-12184 |
CWE-248 | Medium | 8.3.32-150700.3.15.1 | 09.07.2026 |
SB2026051001 SB2026071918 SB2026071919 and 5 more |
||
| #VU137286 - Memory corruption CVE-2026-14355 |
CWE-119 | Medium | 8.0.30-150400.4.68.1, 8.2.33-150600.3.33.1, 8.3.32-150700.3.15.1 | 09.07.2026 |
SB2026070955 SB2026070956 SB2026071356 and 17 more |
||
| #VU130908 - Improper Encoding or Escaping of Output CVE-2026-7263 |
CWE-116 | Medium | 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB2026051416 SB2026051523 and 3 more |
||
| #VU130909 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2026-6735 |
CWE-79 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 19 more |
||
| #VU130910 - NULL Pointer Dereference CVE-2026-7259 |
CWE-476 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 14 more |
||
| #VU130911 - Out-of-bounds read CVE-2026-6104 |
CWE-125 | Medium | 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB2026051416 SB2026051523 and 3 more |
||
| #VU130912 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2025-14179 |
CWE-89 | High | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 19 more |
||
| #VU130913 - Use After Free CVE-2026-6722 |
CWE-416 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 17 more |
||
| #VU130914 - Use After Free CVE-2026-7261 |
CWE-416 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 17 more |
||
| #VU130915 - NULL Pointer Dereference CVE-2026-7262 |
CWE-476 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 19 more |
||
| #VU130916 - Integer overflow CVE-2026-7568 |
CWE-190 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 19 more |
||
| #VU130917 - Type conversion CVE-2026-7258 |
CWE-704 | Medium | 8.0.30-150400.4.65.1, 8.2.31-150600.3.28.1, 8.3.31-150700.3.12.1, 8.4.21-160000.1.1 | 10.05.2026 |
SB2026051001 SB20260511112 SB20260513120 and 17 more |
||
| #VU120274 - Improper input validation |
CWE-20 | Low | 8.3.23-150700.3.6.1 | 23.12.2025 |
SB2025122340 SB2026010709 |
||
| #VU120272 - Missing release of memory after effective lifetime CVE-2025-14177 |
CWE-401 | Medium | 8.2.30-150600.3.25.1, 8.3.23-150700.3.6.1, 8.3.29-150700.3.9.1 | 23.12.2025 |
SB2025122340 SB2025122342 SB2026010709 and 20 more |
||
| #VU120271 - Heap-based Buffer Overflow CVE-2025-14178 |
CWE-122 | High | 8.0.30-150400.4.60.1, 8.2.30-150600.3.25.1, 8.3.23-150700.3.6.1, 8.3.29-150700.3.9.1 | 23.12.2025 |
SB2025122340 SB2025122342 SB2026010709 and 33 more |
||
| #VU120270 - NULL Pointer Dereference CVE-2025-14180 |
CWE-476 | Medium | 8.2.30-150600.3.25.1, 8.3.23-150700.3.6.1, 8.3.29-150700.3.9.1 | 23.12.2025 |
SB2025122340 SB2025122342 SB2026010709 and 18 more |
||
| #VU105639 - Use After Free CVE-2024-11235 |
CWE-416 | Medium | 8.0.30-150400.4.54.1, 8.2.28-150600.3.16.1 | 12.03.2025 |
SB2025031231 SB2025031232 SB2025031233 and 10 more |
Showing elements 1 - 20 out of 50