slim/psr7
PSR-7 implementation for use with Slim 4
Activity
- Latest release
- 10mo ago
- Total releases
- 22
- Cadence
- ~3 months
- Last 12 months
- 1
Reach
- Stars
- 152
Details
- License
- MIT
- First release
- May 03, 2019
| Version | Released | |
|---|---|---|
1.8.0
minor
| ||
1.7.1
patch
| ||
1.6.2
patch
| ||
1.5.2
patch
| ||
1.4.2
patch
| ||
1.7.0
minor
| ||
1.5.1
patch
| ||
1.4.1
patch
| ||
1.6.1
patch
| ||
1.6
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.5
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.4
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.3.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.2.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.1.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.0.0
major
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.6
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.5.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.4.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.3.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.2.0
minor
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.1.0
initial
1 CVE
CVE-2023-30536
GHSA-q2qj-628g-vhfw
Apr 18, 2023
Insecure header validation in slim/psr7
6.5
/ 10
Medium
Network
Low
None
None
Unchanged
None
Low
Low
ImpactAn attacker could sneak in a newline ( PatchesThe issue is patched in 1.6.1, 1.5.1, and 1.4.1. WorkaroundsIn Slim-Psr7 prior to 1.6.1, 1.5.1, and 1.4.1, validate HTTP header keys and/or values, and if using user-supplied values, filter them to strip off leading or trailing newline characters before calling withHeader(). AcknowledgmentsWe are very grateful to and thank Graham Campbell for reporting and working with us on this issue. References
Affected versions
1.6
1.5
0.1.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6
1.0.0
1.1.0
1.2.0
1.3.0
+ 1 more Show less
1.4
Fixed in
1.4.1
1.5.1
1.6.1
References
Updated Sep 10, 2026 · Source: OSV.dev |