VulnSea

Tagged “composer”

CVEs tagged composer, newest first.

504 CVEsRSS

CVE-2026-54713Low· 3.7
1mo ago

CakePHP Queue is a queue-interop compatible queueing library

CakePHP Queue is a queue-interop compatible queueing library. From 0.1.11 until 2.3.1, QueueManager::getUniqueId() generates identifiers for jobs with shouldBeUnique enabled from the job class, method, and parameters, but sorting paramet…

▾ Sunlitcakephp · cakephp/queueEPSS 0.46%via NVD
GHSA-7w8c-qgxg-m7jxHigh· 7.1
1mo ago

LibreNMS — Stored XSS via SNMP/Syslog Data in Legacy Templates

LibreNMS — Stored XSS via SNMP/Syslog Data in Legacy Templates

▾ Twilightlibrenms · librenms/librenmsvia GHSA
CVE-2026-44701Low· 3.5
1mo ago

OpenSTAManager has HTML Injection in modules/utenti/edit.php

OpenSTAManager has HTML Injection in modules/utenti/edit.php

▾ Sunlitdevcode-it · devcode-it/openstamanagervia GHSA
CVE-2026-54614Medium· 4.3
1mo ago

DebugKit provides a debugging toolbar for CakePHP applications

DebugKit provides a debugging toolbar for CakePHP applications. Prior to 4.10.3 and 5.2.4, the DebugKit MailPreview feature in src/Controller/MailPreviewController.php accepts a route-controlled previewName value in findPreview and passe…

▾ Sunlitcakephp · cakephp/debug_kitEPSS 0.54%via NVD
CVE-2026-54256Medium· 5.4
1mo ago

Winter CMS is a content management system built on the Laravel PHP framework

Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend FileUpload form widget trusted an attacker-controlled file_id POST parameter when resolving the attachment …

▾ Sunlitwinter · winter/wn-backend-moduleEPSS 0.24%via NVD
CVE-2026-63179Medium· 4.9
1mo ago

Winter CMS is a content management system built on the Laravel PHP framework

Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, authenticated backend users can disclose arbitrary files readable by the PHP process by injecting @import (inline) dire…

▾ Sunlitwinter · winter/wn-backend-moduleEPSS 0.52%via NVD
CVE-2026-55182High
1mo ago

LibreNMS is a network monitoring system

LibreNMS is a network monitoring system. In versions from 21.6.0 up to 26.5.0, the Signal alert transport is vulnerable to command injection because the signal-cli path and the Recipient field of an alert transport entry are insufficient…

▾ Twilightlibrenms · librenms/librenmsEPSS 1.6%via NVD
CVE-2026-32639Medium· 6.8
1mo ago

Winter CMS is a content management system built on the Laravel PHP framework

Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the CMS section's Theme Editor AJAX handlers did not enforce per-template-type permission checks, allowing a backend us…

▾ Sunlitwinter · winter/wn-cms-moduleEPSS 0.46%via NVD
CVE-2026-35445High
1mo ago

Winter CMS is a content management system built on the Laravel PHP framework

Winter CMS is a content management system built on the Laravel PHP framework. In versions prior to 1.2.13, the backend did not validate the handler name submitted through the form postback _handler POST field, allowing an authenticated b…

▾ Twilightwinter · winter/wn-backend-moduleEPSS 0.44%via NVD
CVE-2026-45694Medium· 5.4
1mo ago

LibreNMS is a network monitoring system

LibreNMS is a network monitoring system. In versions up to and including 26.4.0, the Proxmox application view is vulnerable to reflected cross-site scripting through the user-supplied instance and vmid GET parameters, which are reflected…

▾ Sunlitlibrenms · librenms/librenmsEPSS 0.24%via NVD
CVE-2026-32257High· 8.1
1mo ago

Winter is a free, open-source content management system (CMS) based on the Laravel PHP framework

Winter is a free, open-source content management system (CMS) based on the Laravel PHP framework. Prior to 1.2.13, custom CSS supplied through the Brand Settings Styles field by a backend user with the backend.manage_branding permission …

▾ Twilightwinter · winter/wn-backend-moduleEPSS 0.38%via NVD
CVE-2026-32258High· 8.1
1mo ago

Winter is a free, open-source content management system (CMS) based on the Laravel PHP framework

Winter is a free, open-source content management system (CMS) based on the Laravel PHP framework. From 1.2.10 through 1.2.12, authenticated backend users with the backend.manage_editor permission can store custom Markup Styles that are c…

▾ Twilightwinter · winter/wn-backend-moduleEPSS 0.38%via NVD
CVE-2026-32593Medium· 5.9
1mo ago

Winter CMS is a content management system built on the Laravel PHP framework

Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend Filter widget is vulnerable to SQL injection through the numberrange scope type when that scope is configur…

▾ Sunlitwinter · winter/wn-backend-moduleEPSS 0.27%via NVD
GHSA-896w-cw95-xq7wHigh· 8.1
1mo ago

Duplicate Advisory: Grav: Path Traversal in MediaUploadTrait::deleteFile() Allows Arbitrary File Deletion

Duplicate Advisory: Grav: Path Traversal in MediaUploadTrait::deleteFile() Allows Arbitrary File Deletion

▾ Twilightgetgrav · getgrav/gravvia GHSA
GHSA-qh7h-6c7g-x8m6Critical· 5.4
1mo ago

Duplicate Advisory: Grav: Origin validation bypass in Uri::referrer() and Pages::referrerRoute() via unanchored prefix match

Duplicate Advisory: Grav: Origin validation bypass in Uri::referrer() and Pages::referrerRoute() via unanchored prefix match

▾ Midnightgetgrav · getgrav/gravvia GHSA
GHSA-px9v-979x-qmh9Medium· 3.7
1mo ago

Duplicate Advisory: Grav: Non constant time nonce comparison in Utils::verifyNonce() used for CSRF protection

Duplicate Advisory: Grav: Non constant time nonce comparison in Utils::verifyNonce() used for CSRF protection

▾ Sunlitgetgrav · getgrav/gravvia GHSA
GHSA-rj4c-4q9x-543xHigh· 6.5
1mo ago

Duplicate Advisory: Grav: media_directory() Twig function allows filesystem path traversal and file content disclosure from sandboxed page content

Duplicate Advisory: Grav: media_directory() Twig function allows filesystem path traversal and file content disclosure from sandboxed page content

▾ Twilightgetgrav · getgrav/gravvia GHSA
GHSA-mw85-cjh9-8hp7High· 6.5
1mo ago

Duplicate Advisory: Grav: The system, site, and theme Twig variables bypass the content sandbox entirely and are never covered by config_denied_paths

Duplicate Advisory: Grav: The system, site, and theme Twig variables bypass the content sandbox entirely and are never covered by config_denied_paths

▾ Twilightgetgrav · getgrav/gravvia GHSA
GHSA-crrc-vpp2-f5x7High· 7.5
1mo ago

Duplicate Advisory: Grav: config_denied_paths default list omits `system`, exposing real secrets (e.g. system.cache.redis.password) via the Twig sandbox when config_access is enabled

Duplicate Advisory: Grav: config_denied_paths default list omits `system`, exposing real secrets (e.g. system.cache.redis.password) via the Twig sandbox when config_access is enabled

▾ Twilightgetgrav · getgrav/gravvia GHSA
GHSA-8vp7-8q4w-vv7mHigh· 6.5
1mo ago

Duplicate Advisory: Grav: UserInterface offsetget/offsetexists allow-listed in Twig sandbox let editor-authored content leak hashed_password and 2FA secrets via offsetGet()

Duplicate Advisory: Grav: UserInterface offsetget/offsetexists allow-listed in Twig sandbox let editor-authored content leak hashed_password and 2FA secrets via offsetGet()

▾ Twilightgetgrav · getgrav/gravvia GHSA
GHSA-88g4-74f3-63x9Medium· 4.9
1mo ago

phpMyFAQ has Potential Authenticated Path Traversal in PDF Export

phpMyFAQ has Potential Authenticated Path Traversal in PDF Export

▾ Sunlitthorsten · thorsten/phpmyfaqvia GHSA
GHSA-mf8r-wm2w-f8c5Medium· 5.3
1mo ago

phpMyFAQ public FAQ APIs expose inactive FAQ content

phpMyFAQ public FAQ APIs expose inactive FAQ content

▾ Sunlitthorsten · thorsten/phpmyfaqvia GHSA
GHSA-pg62-f8g4-4wqhHigh· 8.8
1mo ago

phpMyFAQ privilege escalation: GroupController::updatePermissions lets a GROUP_EDIT admin grant rights they do not hold

phpMyFAQ privilege escalation: GroupController::updatePermissions lets a GROUP_EDIT admin grant rights they do not hold

▾ Twilightphpmyfaq · phpmyfaq/phpmyfaqvia GHSA
CVE-2026-53965High
1mo ago

The MCP PHP SDK (Composer package mcp/sdk) is the official Model Context Protocol SDK for PHP

The MCP PHP SDK (Composer package mcp/sdk) is the official Model Context Protocol SDK for PHP. In versions 0.5.0 through 0.7.0, the HTTP client transport reads a Server-Sent Events response stream incrementally and appends each chunk to …

▾ Twilightmcp · mcp/sdkEPSS 0.61%via NVD
CVE-2026-77635CriticalPoC
1mo ago

CakePHP is a rapid development framework for PHP

CakePHP is a rapid development framework for PHP. Prior to versions 5.1.10, 5.2.15, and 5.3.7 on their respective release lines, FunctionsBuilder::jsonValue() with PostgresDriver is vulnerable to SQL injection when user-controlled data i…

▾ Abyssalcakephp · cakephp/cakephpEPSS 0.49%via NVD
CVE-2026-77634High
1mo ago

CakePHP is a rapid development framework for PHP

CakePHP is a rapid development framework for PHP. Prior to versions 4.5.12, 4.6.5, 5.1.8, 5.2.14, and 5.3.7 on their respective release lines, custom mail headers added with Message::setHeaders() or Message::addHeaders() do not have CRLF…

▾ Twilightcakephp · cakephp/cakephpEPSS 0.54%via NVD
CVE-2026-77567High· 8.1
1mo ago

Filament is a collection of full-stack components for accelerated Laravel development

Filament is a collection of full-stack components for accelerated Laravel development. Prior to versions 4.12.0 and 5.7.0, incorrect challenge-form required-field handling allows app-based multi-factor authentication to be bypassed when …

▾ Twilightfilament · filament/filamentEPSS 0.55%via NVD
CVE-2026-59989Critical
1mo ago

Phalcon Volt compiler `join` filter compile-time PHP code injection (SSTI leads to RCE)

Phalcon Volt compiler `join` filter compile-time PHP code injection (SSTI leads to RCE)

▾ Midnightphalcon · phalcon/cphalconEPSS 0.54%via GHSA
CVE-2026-63135High· 8.2
1mo ago

YOURLS is a self-hosted, customizable URL shortener written in PHP

YOURLS is a self-hosted, customizable URL shortener written in PHP. From 1.5.1 until 1.10.4, YOURLS stores the HTTP Referer header through yourls_get_referrer(), yourls_sanitize_url_safe(), and yourls_log_redirect(), then aggregates the …

▾ Twilightyourls · yourls/yourlsEPSS 0.43%via NVD
GHSA-8hgv-xc77-jmcrMedium
1mo ago

Grav: Page editors can inject arbitrary script into rendered pages via the Twig sandbox's assets.addJs/addCss allowlist, escalating to super-admin

Grav: Page editors can inject arbitrary script into rendered pages via the Twig sandbox's assets.addJs/addCss allowlist, escalating to super-admin

▾ Sunlitgetgrav · getgrav/gravvia GHSA
CVEs tagged “composer” — page 6 · VulnSea