This page displays vulnerability information about FreeBSD Ports.
The VUXML data was last processed by FreshPorts on 2024-12-20 14:15:46 UTC
List all Vulnerabilities, by package
List all Vulnerabilities, by date
k68These are the vulnerabilities relating to the commit you have selected:
VuXML ID | Description |
---|---|
24a9bd2b-bb43-11ec-af81-0897988a1c07 | Composer -- Command injection vulnerability Composer developers reports:
Discovery 2022-04-13 Entry 2022-04-13 php74-composer php80-composer php81-composer < 1.10.26 php74-composer2 php80-composer2 php81-composer2 >= 2.0.0 lt 2.2.12 >= 2.3.0 lt 2.3.5 CVE-2022-24828 https://github.com/composer/composer/security/advisories/GHSA-x7cr-6qr6-2hh6 |
33922b84-5f09-11ee-b63d-0897988a1c07 | Remote Code Execution via web-accessible composer Composer project reports:
Discovery 2023-09-29 Entry 2023-09-29 Modified 2023-09-30 php80-composer < 1.10.27 > 2.0.0 lt 2.6.4 php81-composer < 1.10.27 > 2.0.0 lt 2.6.4 php82-composer < 1.10.27 > 2.0.0 lt 2.6.4 php83-composer < 1.10.27 > 2.0.0 lt 2.6.4 php80-composer2 < 2.6.4 php81-composer2 < 2.6.4 php82-composer2 < 2.6.4 php83-composer2 < 2.6.4 CVE-2023-43655 https://github.com/composer/composer/security/advisories/GHSA-jm6m-4632-36hf |