Announcements

CVE-2026-6104 (matched: php)

  • 25th July 2026
A security flaw has been identified in specific versions of PHP, the software that powers most dynamic websites, content management systems, and web applications. The issue affects PHP 8.4 releases older than 8.4.21, and PHP 8.5 releases older than 8.5.6. The bug triggers when common text encoding functions (used to convert or detect the character ...
Continue reading

CVE-2026-7261 (matched: php)

  • 25th July 2026
A security vulnerability has been identified in specific versions of PHP, the software that powers most dynamic, interactive websites. The affected versions are 8.2 releases older than 8.2.31, 8.3 releases older than 8.3.31, 8.4 releases older than 8.4.21, and 8.5 releases older than 8.5.6.The flaw occurs when a specific PHP feature called ...
Continue reading

CVE-2026-6722 (matched: php)

  • 25th July 2026
A security flaw, tracked as CVE-2026-6722, has been identified in specific versions of PHP, the programming language that powers many interactive website features. The issue affects PHP’s SOAP extension, a tool used for exchanging data between different web services. The flaw can be exploited by an attacker who can send specially crafted ...
Continue reading

CVE-2025-14179 (matched: php)

  • 25th July 2026
A security flaw exists in specific older versions of PHP, the software used to run many dynamic websites, when the PDO Firebird database connection tool is in use. The affected versions are PHP 8.2 releases older than 8.2.31, 8.3 releases older than 8.3.31, 8.4 releases older than 8.4.21, and 8.5 releases older than 8.5.6. The bug occurs when ...
Continue reading