php.net |  support |  documentation |  report a bug |  advanced search |  search howto |  statistics |  random bug |  login
  Showing 1-30 of 81071 Show Next 30 Entries »
ID# Date Last Modified Package Type Status PHP Version OS Summary Assigned
82016
(edit)
2023-07-27 08:26 UTC 2023-07-27 11:14 UTC Date/time related Bug Not a bug 8.2.8   usage of +- in strtotime results in unexpected output with PHP8.2  
81992
(edit)
2023-05-10 11:39 UTC 2023-05-25 22:36 UTC SPL related Bug Closed 8.2.6RC1 Linux SplFixedArray::setSize() causes use-after-free  
81989
(edit)
2023-03-23 00:30 UTC 2023-03-23 04:37 UTC *Directory/Filesystem functions Req Open 8.0.28 any Glob() miss a scope limit parameter, to limit the max returned paths  
81987
(edit)
2023-03-10 16:08 UTC 2023-03-12 01:38 UTC HTTP related Bug Open Irrelevant Linux Incomplete Multipart/form-data but is passed to PHP  
81746
(edit)
2023-01-20 22:19 UTC 2023-02-13 04:40 UTC *Directory/Filesystem functions Sec Bug Closed 8.0.27 Linux 1-byte array overrun in common path resolve code stas
81745
(edit)
2023-01-16 14:31 UTC 2023-01-19 12:49 UTC *URL Functions Bug Duplicate 8.2.1 UNIX/Windows parse_url return wrong host if cmb
81744
(edit)
2023-01-05 12:52 UTC 2023-02-13 04:40 UTC *Encryption and hash functions Sec Bug Closed 8.2.0   Password_verify() always return true with some hash stas
81743
(edit)
2022-12-12 15:41 UTC 2022-12-12 18:26 UTC PDO Core Bug Not a bug 8.1.13 * XSS via PDOException error cmb
81742
(edit)
2022-11-28 23:06 UTC 2022-11-29 10:50 UTC SQLite related Bug Closed master-Git-2022-11-28 (Git) all open_basedir bypass in SQLite3/pdo-sqlite extension by using url encoded file cmb
81741
(edit)
2022-11-12 06:20 UTC 2022-11-20 04:22 UTC PHP options/info functions Bug No Feedback 7.4.33 centos 7 memory_limit not working  
81740
(edit)
2022-10-29 13:25 UTC 2022-12-19 06:27 UTC PDO SQLite Sec Bug Closed 7.4Git-2022-10-29 (Git) * PDO::quote() may return unquoted string stas
81739
(edit)
2022-10-12 16:13 UTC 2022-10-24 00:58 UTC GD related Sec Bug Closed 7.4Git-2022-10-12 (Git) * OOB read due to insufficient input validation in imageloadfont() stas
81738
(edit)
2022-10-11 18:24 UTC 2022-10-21 05:55 UTC hash related Sec Bug Closed 8.2.0RC3 all 64-bit buffer overflow in hash_update() on long parameter  
81735
(edit)
2022-09-30 08:56 UTC 2022-10-05 15:08 UTC Unknown/Other Function Bug Duplicate 7.4Git-2022-09-30 (Git) linux The substr function has conditional competition cmb
81736
(edit)
2022-09-30 08:56 UTC 2022-10-05 15:08 UTC Unknown/Other Function Bug Duplicate 7.4Git-2022-09-30 (Git) linux The substr function has conditional competition cmb
81734
(edit)
2022-09-30 08:55 UTC 2022-10-05 15:09 UTC Unknown/Other Function Bug Not a bug 7.4Git-2022-09-30 (Git) linux The substr function has conditional competition cmb
81732
(edit)
2022-09-27 06:37 UTC 2022-09-30 02:47 UTC Unknown/Other Function Bug Duplicate 7.4.30 Windows/Linux unserialize __wakeup bypass cmb
81727
(edit)
2022-08-12 09:44 UTC 2022-09-29 18:57 UTC HTTP related Sec Bug Closed Irrelevant Any $_COOKIE names string replacement (. -> _): cookie integrity vulnerabilities derick
81726
(edit)
2022-07-19 14:30 UTC 2022-09-29 18:58 UTC PHAR related Sec Bug Closed 7.4.30 ubuntu-20.04 phar wrapper can occur dos when using quine gzip file stas
81724
(edit)
2022-07-05 15:25 UTC 2023-02-07 23:33 UTC OpenSSL related Req Assigned 8.1.7 Any openssl_cms/pkcs7_encrypt only allows specific ciphers bukka
81723
(edit)
2022-06-27 22:59 UTC 2022-07-05 07:05 UTC Filesystem function related Sec Bug Closed 8.1.7 Linux Heap buffer overflow in finfo_buffer stas
81722
(edit)
2022-06-14 19:17 UTC 2022-06-20 12:47 UTC Unknown/Other Function Sec Bug Not a bug 7.4.30 Ubuntu Session Fixation in PHP Core PHPSESSID  
81720
(edit)
2022-05-16 14:50 UTC 2022-06-06 07:13 UTC PostgreSQL related Sec Bug Closed 8.1.6   Uninitialized array in pg_query_params() leading to RCE stas
81719
(edit)
2022-05-16 14:33 UTC 2022-06-15 07:24 UTC PDO MySQL Sec Bug Closed 8.1.6   mysqlnd/pdo password buffer overflow leading to RCE cmb
81717
(edit)
2022-05-13 09:14 UTC 2022-05-13 11:15 UTC Scripting Engine problem Sec Bug Duplicate 7.4.29 Any PHP "Magic" methods DOS cmb
81715
(edit)
2022-04-06 19:14 UTC 2022-04-07 09:46 UTC *Directory/Filesystem functions Sec Bug Not a bug 8.1.4 Linux/Windows Apache + PHP <= 8.1.4 open_basedir bypass‏‏ cmb
81714
(edit)
2022-03-28 09:16 UTC 2022-03-29 09:50 UTC hash related Bug Closed 8.1.4 Linux segfault (use-after-free) serializing finalized HashContext cmb
81713
(edit)
2022-03-10 11:30 UTC 2022-06-10 08:46 UTC OpenSSL related Sec Bug Closed PHP 7.4 all NULL byte injection in several OpenSSL functions working with certificates bukka
81712
(edit)
2022-02-26 11:51 UTC 2022-02-28 10:47 UTC *General Issues Bug Not a bug 8.1.3 Windows Something wrong cmb
81711
(edit)
2022-02-23 11:09 UTC 2022-02-24 09:25 UTC Class/Object related Bug Suspended 8.1.3 Linux, web Private properties data leak by casting object to array  
  Showing 1-30 of 81071 Show Next 30 Entries »
 
PHP Copyright © 2001-2024 The PHP Group
All rights reserved.
Last updated: Fri Apr 19 00:01:29 2024 UTC