fuel/core
FuelPHP 1.x Core
Activity
- Latest release
- 4y ago
- Total releases
- 14
- Cadence
- ~30 days
- Last 12 months
- 0
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Apr 09, 2016
| Version | Released | |
|---|---|---|
1.9.0
minor
| ||
1.8.2
patch
| ||
1.8.1.6
patch
| ||
1.8.1.5
patch
| ||
1.8.1.4
patch
| ||
1.8.1.3
patch
| ||
1.8.1.2
patch
| ||
1.8.1.1
patch
| ||
1.8.1
patch
| ||
1.8.0.4
patch
1 CVE
GHSA-fgrx-4637-fcf5
May 15, 2024
fuel/core Crypt encryption compromised.
Medium
In fuel/core versions pior to 1.8.1, with the right knowledge, code, and GPU calculation power, Crypt encryption can be broken in minutes. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
1.8.0.4
Fixed in
1.8.1
References Updated Nov 29, 2024 · Source: OSV.dev | ||
1.8.0.3
patch
2 CVEs
GHSA-fgrx-4637-fcf5
May 15, 2024
fuel/core Crypt encryption compromised.
Medium
In fuel/core versions pior to 1.8.1, with the right knowledge, code, and GPU calculation power, Crypt encryption can be broken in minutes. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
1.8.0.4
Fixed in
1.8.1
References Updated Nov 29, 2024 · Source: OSV.dev
GHSA-26hp-cgjj-m2j3
May 15, 2024
fuel/core ImageMagick driver does not escape all shell arguments.
High
This vulnerability may cause OS commands to be executed when you pass unvalidated image filenames containing specially crafted strings to the ImageMagick driver. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
Fixed in
1.8.0.4
References Updated Nov 29, 2024 · Source: OSV.dev | ||
1.8.0.2
patch
2 CVEs
GHSA-fgrx-4637-fcf5
May 15, 2024
fuel/core Crypt encryption compromised.
Medium
In fuel/core versions pior to 1.8.1, with the right knowledge, code, and GPU calculation power, Crypt encryption can be broken in minutes. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
1.8.0.4
Fixed in
1.8.1
References Updated Nov 29, 2024 · Source: OSV.dev
GHSA-26hp-cgjj-m2j3
May 15, 2024
fuel/core ImageMagick driver does not escape all shell arguments.
High
This vulnerability may cause OS commands to be executed when you pass unvalidated image filenames containing specially crafted strings to the ImageMagick driver. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
Fixed in
1.8.0.4
References Updated Nov 29, 2024 · Source: OSV.dev | ||
1.8.0.1
patch
2 CVEs
GHSA-fgrx-4637-fcf5
May 15, 2024
fuel/core Crypt encryption compromised.
Medium
In fuel/core versions pior to 1.8.1, with the right knowledge, code, and GPU calculation power, Crypt encryption can be broken in minutes. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
1.8.0.4
Fixed in
1.8.1
References Updated Nov 29, 2024 · Source: OSV.dev
GHSA-26hp-cgjj-m2j3
May 15, 2024
fuel/core ImageMagick driver does not escape all shell arguments.
High
This vulnerability may cause OS commands to be executed when you pass unvalidated image filenames containing specially crafted strings to the ImageMagick driver. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
Fixed in
1.8.0.4
References Updated Nov 29, 2024 · Source: OSV.dev | ||
1.8.0
initial
2 CVEs
GHSA-fgrx-4637-fcf5
May 15, 2024
fuel/core Crypt encryption compromised.
Medium
In fuel/core versions pior to 1.8.1, with the right knowledge, code, and GPU calculation power, Crypt encryption can be broken in minutes. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
1.8.0.4
Fixed in
1.8.1
References Updated Nov 29, 2024 · Source: OSV.dev
GHSA-26hp-cgjj-m2j3
May 15, 2024
fuel/core ImageMagick driver does not escape all shell arguments.
High
This vulnerability may cause OS commands to be executed when you pass unvalidated image filenames containing specially crafted strings to the ImageMagick driver. Affected versions
1.8.0
1.8.0.1
1.8.0.2
1.8.0.3
Fixed in
1.8.0.4
References Updated Nov 29, 2024 · Source: OSV.dev |