Innovate faster and cut risk with PHP experts from Zend Services.
Explore Services
See How Zend Helps Leading Hosting Providers Keep Their Managed Sites on Secure PHP
Read More
Learn PHP from PHP experts with free, on-demand, and instructor led courses.
Explore Training
Submit support requests and browse self-service resources.
Explore Support
Remote Code Execution
iconv Buffer Overflow in Specific Character Set Conversions
2024-04-24
Cross-Site Request Forgery
Host/Secure cookie bypass due to partial CVE-2022-31629 fix
2024-04-12
Denial of Service
Infinite loop in mb_encode_mimeheader for some inputs
Privilege Escalation
password_verify can erroneously return true
Command injection via array-ish $command parameter of proc_open even if`bypass_shell option enabled on Windows
2024-02-25
XML External Entity vector
2023-08-11
Missing error check and insufficient random bytes in HTTP Digest authentication for SOAP
2023-06-08
DOS vulnerability when parsing multipart request body
2023-02-14
SQL Injection
CVE-2022-31631 php: PDO::quote() may return unquoted string due to an integer overflow
2023-01-05
CVE-2022-31630 php: OOB read due to insufficient input validation in imageloadfont()
2022-10-27