#VU105640 Resource management error in PHP - CVE-2025-1219
Published: March 12, 2025 / Updated: March 20, 2025
PHP
PHP Group
Description
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists in libxml streams due to usage of an incorrect Content-Type header when requesting a redirected resource. A remote attacker can leverage this vulnerability to perform content spoofing or XSS attacks.