We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 0ba5229 commit de4f7f9Copy full SHA for de4f7f9
NEWS
@@ -2,6 +2,13 @@ PHP NEWS
2
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
3
?? ??? ????, PHP 8.1.28
4
5
+- Standard:
6
+ . Fixed bug GHSA-pc52-254m-w9w7 (Command injection via array-ish $command
7
+ parameter of proc_open). (CVE-2024-1874) (Jakub Zelenka)
8
+ . Fixed bug GHSA-wpj3-hf5j-x4v4 (__Host-/__Secure- cookie bypass due to
9
+ partial CVE-2022-31629 fix). (CVE-2024-2756) (nielsdos)
10
+ . Fixed bug GHSA-h746-cjrr-wfmr (password_verify can erroneously return true,
11
+ opening ATO risk). (CVE-2024-3096) (Jakub Zelenka)
12
13
21 Dec 2023, PHP 8.1.27
14
0 commit comments