swoole CVE Vulnerabilities & CVE List (4)

Products (CPE): — CVEs: 4

swoole vulnerability overview

Aggregates CVE and security vulnerability intelligence across all swoole-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk path handling and related problems; some flaws may lead to vendor impact file overwrite, affecting vendor surface software deployment and vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2020-24275 A HTTP response header injection vulnerability in Swoole v4.5.2 allows attackers to execute arbitrary code via supplying a crafted URL. [email protected] 6.5 0.80% 2023-07-20 2024-11-21
CVE-2021-43676 matyhtf framework v3.0.5 is affected by a path manipulation vulnerability in Smarty.class.php. [email protected] 9.8 0.56% 2021-12-03 2024-11-21
CVE-2019-15518 Swoole before 4.2.13 allows directory traversal in swPort_http_static_handler. [email protected] 5.3 0.29% 2019-08-23 2024-11-21
CVE-2018-15503 The unpack implementation in Swoole version 4.0.4 lacks correct size checks in the deserialization process. An attacker can craft a serialized object to exploit this vulnerability and cause a SEGV. [email protected] 7.5 1.47% 2018-08-18 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence