Early Access — Mondoo Vulnerability Intelligence is currently in preview.
PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.
Security Fix(es):
php: pgsql extension does not check for errors during escaping (CVE-2025-1735)
php: NULL Pointer Dereference in PHP SOAP Extension via Large XML Namespace Prefix (CVE-2025-6491)
php: PHP Hostname Null Character Vulnerability (CVE-2025-1220)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
0:8.3.26-1.module+el9.7.0+40049+21bbec6b0:5.1.23-1.module+el9.7.0+40004+bf50a5680:5.1.23-1.module+el9.7.0+40005+715283ec0:6.1.0-2.module+el9.7.0+40005+715283ec0:2.0.3-4.module+el9.7.0+40003+454ed3c40:2.0.3-4.module+el9.7.0+40004+bf50a5680:2.0.3-4.module+el9.7.0+40005+715283ec0:3.3.1-1.module+el9.7.0+40005+715283ec0:1.22.3-1.module+el9.7.0+40004+bf50a5680:1.22.3-1.module+el9.7.0+40005+715283ecExploitability
AV:NAC:HPR:NUI:NScope
S:UImpact
C:NI:NA:HCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H