endroid/qr-code-bundle
Endroid QR Code Bundle
Activity
- Latest release
- 3mo ago
- Total releases
- 45
- Cadence
- ~31 days
- Last 12 months
- 3
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Dec 02, 2017
| Version | Released | |
|---|---|---|
7.0.1
patch
| ||
7.0.0
major
| ||
6.1.0
minor
| ||
6.0.0
major
| ||
5.0.2
patch
| ||
5.0.1
patch
| ||
5.0.0
major
| ||
4.3.3
patch
| ||
4.3.2
patch
| ||
4.3.1
patch
| ||
4.3.0
minor
| ||
4.2.1
patch
| ||
4.2.0
minor
| ||
4.1.1
patch
| ||
4.1.0
minor
| ||
4.0.9
patch
| ||
4.0.7
patch
| ||
4.0.6
patch
| ||
4.0.5
patch
| ||
4.0.4
patch
| ||
4.0.3
patch
| ||
4.0.2
patch
| ||
4.0.1
patch
| ||
4.0.0
major
| ||
3.4.3
patch
| ||
3.4.2
patch
| ||
3.4.1
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.4.0
minor
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.3.4
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.3.3
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.3.2
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.3.1
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.3.0
minor
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.2.3
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.2.2
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.2.1
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.2.0
minor
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.1.4
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.1.3
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.1.2
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.1.1
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.1.0
minor
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.0.2
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.0.1
patch
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev | ||
3.0.0
initial
1 CVE
GHSA-mvf6-3f2g-xfxf
May 15, 2024
endroid/qr-code-bundle File Disclosure via logo_path query parameter
Medium
Versions of endroid/qr-code-bundle prior to 3.4.2 are affected by a security vulnerability that allows disclosure of files through the logo_path query parameter. The vulnerability arises from the improper handling of non-image data as the logo, which could lead to unintended file disclosure. Affected versions
3.0.0
3.0.1
3.0.2
3.1.0
3.1.1
3.1.2
3.1.3
3.1.4
3.2.0
3.2.1
3.2.2
3.2.3
+ 7 more Show less
3.3.0
3.3.1
3.3.2
3.3.3
3.3.4
3.4.0
3.4.1
Fixed in
3.4.2
References Updated Nov 29, 2024 · Source: OSV.dev |