Summary
A vulnerability with “high” severity has been discovered in PHP, a well-known scripting language interpreter. This vulnerability, if exploited, could allow the execution of arbitrary code on the target systems.
Risk
Estimate of the impact of the vulnerability on the reference community: MEDIUM/YELLOW (64.74/100)1.
Type
- Arbitrary Code Execution
Affected products and versions
PHP, 8.0.0 – 8.3.11
Mitigation actions
In line with the vendor statements, it is recommended to apply the available mitigations following the indications reported in the security bulletins reported in the References section.
Unique Vulnerability Identifiers
Here are only the CVEs related to the “high” severity vulnerabilities:
References
https://www.php.net/ChangeLog-8.php
1This estimate is made taking into account several parameters, including: CVSS, availability of patches/workarounds and PoC, diffusion of the affected software/devices in the reference community.