PHP 7.0

Status EOLSupport 2015-12 – 2019-01Latest 7.0.33Vulnerabilities 156← All PHP versions
KEV Unfixed
2024-06-09≤ 7.0.33

Argument Injection in PHP-CGI

Critical 9.8
2016-08-07< 7.0.8

php: Use After Free Vulnerability in PHP's GC algorithm and unserialize

Critical 9.8
2016-07-25< 7.0.9

php: Use after free in unserialize() with Unexpected Session Deserialization

Critical 9.8
2016-08-07< 7.0.8

php: Int/size_t confusion in SplFileObject::fread

Critical 9.8
2016-08-07< 7.0.6

php: Double free in SplDoublyLinkedList::offsetSet

Critical 9.8 Unfixed
2019-02-22≤ 7.0.33

php: Heap-based buffer over-read in PHAR reading functions

Critical 9.8 Unfixed
2019-02-22≤ 7.0.33

php: Invalid memory access in function xmlrpc_decode()

Critical 9.8 Unfixed
2019-03-08≤ 7.0.33

php: Uninitialized read in exif_process_IFD_in_TIFF

Critical 9.8
2016-05-22< 7.0.10

php: Double free vulnerability in error condition of format printer

Critical 9.8
2016-09-28< 7.0.11

php: Integer overflow in gdImageWebpCtx

Critical 9.8 Unfixed
2017-05-12≤ 7.0.33

php: Overflowing the length of string causes crash

Critical 9.8
2017-01-04< 7.0.13

php: Stack based buffer overflow in dynamicGetbuf

Critical 9.8
2017-01-04< 7.0.12

php: Use after free in unserialize()

Critical 9.8
2017-01-04< 7.0.13

php: Use after free in unserialize() via DateInterval::__wakeup()

Critical 9.8
2016-01-19= 7.0.1

php: Format string vulnerability in class name error message

Critical 9.8
2016-05-16< 7.0.3

php: buffer overflow in handling of long link names in tar phar archives

Critical 9.8
2015-12-02< 7.0.3

pcre: Integer overflow caused by missing check for certain conditions (8.38/31)

Critical 9.8
2015-12-02< 7.0.3

pcre: inefficient posix character class syntax check (8.38/16)

Critical 9.8
2015-12-02< 7.0.3

pcre: uninitialized memory read triggered by malformed posix character class (8.38/22)

Critical 9.8
2015-12-02< 7.0.3

pcre: infinite recursion in JIT compiler when processing certain patterns (8.38/21)

Critical 9.8
2015-12-02< 7.0.3

pcre: Buffer overflow caused by lookbehind assertion (8.38/6)

Critical 9.8
2015-12-02< 7.0.3

pcre: Buffer overflow caused by repeated conditional group (8.38/3)

Critical 9.8
2016-05-22< 7.0.4

php: Multiple heap overflows due to integer overflows

Critical 9.8
2016-05-22< 7.0.4

php: Multiple heap overflows due to integer overflows

Critical 9.8
2016-05-22< 7.0.4

php: Multiple heap overflows due to integer overflows

Critical 9.8
2016-05-20< 7.0.5

php: Format string vulnerability in php_snmp_error()

Critical 9.8
2016-05-20< 7.0.5

php: Invalid memory write in phar on filename containing \0 inside name

Critical 9.8
2016-05-20< 7.0.5

php: mb_strcut() Negative size parameter in memcpy

Critical 9.8
2016-08-07< 7.0.6

php: Heap overflow caused by integer overflow when reading zip files in ZipArchive

Critical 9.8
2016-05-22< 7.0.6

php: xml_parse_into_struct() can crash when XML parser is re-used

Critical 9.8
2016-05-22< 7.0.6

php: OOB read in grapheme_stripos and grapheme_strpos when negative offset is used

Critical 9.8
2016-05-22< 7.0.6

php: OOB read in grapheme_stripos and grapheme_strpos when negative offset is used

Critical 9.8
2016-04-26< 7.0.6

php: Signedness vulnerability causing heap overflow in libgd

Critical 9.8
2016-05-22< 7.0.6

php: Out-of-bounds heap memory read in exif_read_data() caused by malformed input

Critical 9.8
2016-05-22< 7.0.6

php: Out-of-bounds heap memory read in exif_read_data() caused by malformed input

Critical 9.8
2016-05-22< 7.0.6

php: Out-of-bounds heap memory read in exif_read_data() caused by malformed input

Critical 9.8
2016-05-22< 7.0.6

php: bcpowmod accepts negative scale causing heap buffer overflow corrupting _one_ definition

Critical 9.8
2016-05-22< 7.0.6

php: bcpowmod accepts negative scale causing heap buffer overflow corrupting _one_ definition

Critical 9.8
2016-08-07< 7.0.8

php: ZipArchive class Use After Free Vulnerability in PHP's GC algorithm and unserialize

Critical 9.8
2016-08-07< 7.0.8

php: Double Free Corruption in wddx_deserialize

Critical 9.8
2017-06-08= 7.0.7

php: Invalid free() instead of efree() in phar_extract_file()

Critical 9.8
2016-08-07< 7.0.8

php: Integer Overflows in mcrypt_generic() and mdecrypt_generic() resulting in heap overflows

Critical 9.8
2016-08-07< 7.0.8

php: Double free in _php_mb_regex_ereg_replace_exec

Critical 9.8
2016-07-25< 7.0.9

php: Heap buffer overflow vulnerability in simplestring_addn in simplestring.c

Critical 9.8
2016-07-25< 7.0.9

php: Use after free in SNMP with GC and unserialize()

Critical 9.8
2016-07-25< 7.0.9

php: Out-of-bounds access in locale_accept_from_http

Critical 9.8
2016-07-25< 7.0.9

php: Out-of-bounds access in exif_process_IFD_in_MAKERNOTE

Critical 9.8
2016-09-12< 7.0.10

php: wddx_deserialize allows illegal memory access

Critical 9.8
2016-09-12< 7.0.10

php: imagegammacorrect allows arbitrary write access

Critical 9.8
2016-09-12< 7.0.10

php: select_colors write out-of-bounds

Critical 9.8
2016-09-12< 7.0.10

php: Heap overflow in curl_escape

Critical 9.8
2016-09-12< 7.0.10

php: bypass __wakeup() in deserialization of an unexpected object

Critical 9.8
2016-09-17< 7.0.11

php: Use after free in wddx_deserialize

Critical 9.8
2016-09-17< 7.0.11

php: Missing type check when unserializing SplArray

Critical 9.8
2016-09-17< 7.0.11

php: Out of bounds heap read when verifying signature of zip phar in phar_parse_zipfile

Critical 9.8
2017-01-04< 7.0.14

php: Invalid read when wddx decodes empty boolean element

Critical 9.8
2017-01-04< 7.0.14

php: Use After Free in unserialize()

Critical 9.8
2017-01-24< 7.0.15

php: Off-by-one error in phar_parse_pharfile when loading crafted phar archive

Critical 9.8
2017-01-12< 7.0.15

php: Use-after-free vulnerability when resizing the 'properties' hash table of a serialized object

Critical 9.8
2017-01-11< 7.0.15

php: Use of uninitialized memory in unserialize()

Critical 9.8
2017-05-24< 7.0.21

oniguruma: Out-of-bounds heap write in bitset_set_range()

Critical 9.8
2017-05-24< 7.0.21

oniguruma: Out-of-bounds stack read in mbc_enc_len() during regular expression searching

Critical 9.8
2017-05-24< 7.0.21

oniguruma: Heap buffer overflow in next_state_val() during regular expression compilation

Critical 9.8
2017-05-24< 7.0.21

oniguruma: Out-of-bounds stack read in match_at() during regular expression searching

Critical 9.8
2017-07-17< 7.0.21

php: Stack-based buffer over-read in msgfmt_parse_message function

Critical 9.8
2017-08-18< 7.0.21

php: buffer over-read in finish_nested_data function

Critical 9.8
2017-08-18< 7.0.23

php: Heap use after free in ext/standard/var_unserializer.re

Critical 9.8
2016-01-03< 7.0.25

pcre: heap buffer overflow in handling of duplicate named groups (8.39/14)

Critical 9.8
2018-03-01< 7.0.28

php: Stack-based buffer under-read in php_stream_url_wrap_http_ex() in http_fopen_wrapper.c when parsing HTTP response

Critical 9.6
2016-05-22< 7.0.27

php: libxml_disable_entity_loader setting is shared between threads

Critical 9.1
2016-01-19< 7.0.2

php: Out-of-bounds memory read via gdImageRotateInterpolated

Critical 9.1
2016-08-07< 7.0.2

php: out-of-bounds write in fpm_log.c

Critical 9.1
2017-07-10< 7.0.15

php: Out-of-bounds read in phar_parse_pharfile

High 8.8
2016-05-22< 7.0.3

php: Uninitialized pointer in phar_make_dirstream()

High 8.8
2016-05-22< 7.0.3

php: use of uninitialized pointer in PharFileInfo::getContent

High 8.8
2016-08-07< 7.0.8

gd: Integer Overflow in gdImagePaletteToTrueColor() resulting in heap overflow

High 8.8
2016-08-07< 7.0.8

gd: Integer overflow in _gd2GetHeader() resulting in heap overflow

High 8.8
2016-07-25< 7.0.9

php: Stack-based buffer overflow vulnerability in php_stream_zip_opener

High 8.8
2018-04-29< 7.0.30

php: Out-of-bounds read in ext/exif/exif.c:exif_read_data() when reading crafted JPEG data

High 8.6
2016-01-19< 7.0.1

php: Use after free vulnerability in Collator::sortWithSortKeys

High 8.6
2016-08-07< 7.0.7

php: improper nul termination leading to out-of-bounds read in get_icu_value_internal

High 8.1
2016-07-19< 7.0.9

PHP: sets environmental variable based on user supplied Proxy request header

High 8.1
2016-09-12< 7.0.10

php: memory allocator fails to realloc small block to large one

High 8.1
2016-09-17< 7.0.11

php: Heap overflow in mysqlnd when not receiving UNSIGNED_FLAG in BIT field

High 7.8
2017-04-21< 7.0.9

php: Improper error handling in bzread()

High 7.8
2016-07-25< 7.0.9

php: Integer overflow leads to buffer overflow in virtual_file_ex

High 7.8
2017-07-25< 7.0.21

php: Stack based 1-byte buffer over-write in zend_ini_do_op() function Zend/zend_ini_parser.c

High 7.6
2016-08-07< 7.0.7

gd: incorrect boundary adjustment in _gdContributionsCalc

High 7.5 Unfixed
2019-02-22≤ 7.0.33

php: Out-of-bounds read in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c

High 7.5 Unfixed
2019-03-08≤ 7.0.33

php: File rename across filesystems may allow unwanted access during processing

High 7.5 Unfixed
2019-03-08≤ 7.0.33

php: Uninitialized read in exif_process_IFD_in_MAKERNOTE

High 7.5 Unfixed
2019-03-08≤ 7.0.33

php: Uninitialized read in exif_process_IFD_in_MAKERNOTE

High 7.5
2016-08-07< 7.0.9

gd: Invalid color index not properly handled

High 7.5
2017-01-11< 7.0.13

php: Unserialize Exception object can lead to infinite loop

High 7.5 Unfixed
2017-04-19≤ 7.0.33

High 7.5
2017-03-02< 7.0.14

php: Zend OPCache code permission/sensitive data protection issues

High 7.5
2017-07-10< 7.0.13

php: Incorrect handling of URI components in URL parser

High 7.5
2018-02-09< 7.0.2

php: Output of stream_get_meta_data can be falsified by its input

High 7.5
2019-07-10< 7.0.16

php: misparsing fsockopen calls in main/streams/xp_socket.c leads to information disclosure

High 7.5
2016-05-22< 7.0.0

php: openssl_random_pseudo_bytes() is not cryptographically secure

High 7.5
2016-05-22< 7.0.0

php: odbc_bindcols function mishandles driver behavior for SQL_WVARCHAR columns

High 7.5
2016-05-16< 7.0.0

gd: gdImageFillToBorder deep recursion leading to stack overflow

High 7.5
2015-12-02< 7.0.3

pcre: pcregrep -q is not always quiet (8.38/28)

High 7.5
2016-05-20< 7.0.5

php: Integer overflow in php_raw_url_encode

High 7.5
2016-09-12< 7.0.10

php: wddx_deserialize null dereference in php_wddx_pop_element

High 7.5
2016-09-12< 7.0.10

php: wddx_deserialize null dereference with invalid xml

High 7.5
2016-09-12< 7.0.10

php: wddx_deserialize null dereference

High 7.5
2016-09-12< 7.0.10

php: Session Data Injection Vulnerability

High 7.5
2016-09-17< 7.0.11

php: Null pointer dereference in php_wddx_push_element

High 7.5
2016-09-17< 7.0.11

php: Stack based buffer overflow in msgfmt_format_message

High 7.5
2017-01-04< 7.0.13

php: NULL Pointer Dereference in WDDX Packet Deserialization with PDORow

High 7.5
2017-01-04< 7.0.13

gd: Stack overflow in gdImageFillToBorder on truecolor images

High 7.5
2017-01-24< 7.0.15

php: Integer overflow in phar_parse_pharfile

High 7.5
2017-01-24< 7.0.15

php: Wrong calculation in exif_convert_any_to_int function

High 7.5
2017-01-24< 7.0.15

php: Null pointer dereference when unserializing PHP object

High 7.5
2017-01-24< 7.0.15

php: Out-of-bounds heap read on unserialize in finish_nested_data()

High 7.5
2017-07-10< 7.0.17

php: Denial-of-Service via injecting long form variables

High 7.5
2017-07-10< 7.0.21

php: Incorrect return value check of OpenSSL sealing function leads to crash

High 7.5
2017-05-24< 7.0.21

oniguruma: Invalid pointer dereference in left_adjust_char_head()

High 7.5
2017-07-10< 7.0.21

php: wddx_deserialize() heap out-of-bound read via php_parse_date()

High 7.5
2017-08-18< 7.0.21

php: heap use after free in ext/standard/var_unserializer.re

High 7.5
2017-07-10< 7.0.22

php: Incorrect WDDX deserialization of boolean parameters leads to DoS

High 7.5
2017-11-07< 7.0.25

php: Out-of-bound read in timelib_meridian()

High 7.5
2018-08-03< 7.0.27

php: Mishandled http_header_value in an atoi() call in http_fopen_wrapper.c

High 7.5
2018-04-29< 7.0.30

php: NULL pointer dereference due to mishandling of ldap_get_dn return value allows DoS via malicious LDAP server reply

High 7.5
2018-04-29< 7.0.30

php: Infinite loop in ext/iconv/iconv.c when using stream filter with convert.incov on invalid sequence leads to denial-of-service

High 7.5
2018-08-03< 7.0.31

php: exif: integer overflow leading to out-of-bound buffer read in exif_thumbnail_extract()

High 7.5
2018-11-25< 7.0.33

php: imap_open() allows running arbitrary shell commands via mailbox parameter

High 7.5
2018-08-07< 7.0.31

High 7.5 Unfixed
2018-11-20≤ 7.0.33

High 7.5 Unfixed
2018-11-20≤ 7.0.33

php: Serializing or unserializing COM objects crashes

High 7.5
2018-12-07< 7.0.33

php: NULL pointer dereference in ext/imap/php_imap.c resulting in a denial of service

High 7.5
2019-02-21< 7.0.33

php: Buffer over-read in PHAR reading functions

High 7.4 Unfixed
2017-03-27≤ 7.0.33

php: potential SSRF via fsockopen

High 7.3
2016-01-19< 7.0.0

php: Arbitrary code execution in str_ireplace function

High 7.3
2016-01-19< 7.0.2

php: heap buffer overflow in escapeshell functions

High 7.3
2015-12-02< 7.0.3

pcre: Integer overflow in subroutine calls (8.38/8)

High 7.3
2016-05-20< 7.0.5

file: Buffer over-write in finfo_open with malformed magic file

High 7.1
2016-05-16< 7.0.4

php: Type confusion vulnerability in make_http_soap_request()

Medium 6.8
2015-12-11< 7.0.6

php: uninitialized pointer in phar_make_dirstream()

Medium 6.5 Unfixed
2018-02-19≤ 7.0.33

php: Infinite loop in php-fpm when restarting a child using program execution function

Medium 6.5 Unfixed
2022-09-28≤ 7.0.33

$_COOKIE names string replacement (. -> _): cookie integrity vulnerabilities

Medium 6.5
2016-08-12< 7.0.9

php,gd: Integer overflow error within _gdContributionsAlloc()

Medium 6.5
2016-07-25< 7.0.9

php: Null pointer dereference in exif_process_user_comment

Medium 6.5
2017-08-02< 7.0.21

php: Buffer over-read from unitialized data in gdImageCreateFromGifCtx function

Medium 6.1
2018-04-29< 7.0.30

php: Reflected XSS vulnerability on PHAR 403 and 404 error pages

Medium 6.1
2018-09-16< 7.0.32

php: Cross-site scripting (XSS) flaw in Apache2 component via body of 'Transfer-Encoding: chunked' request

Medium 6.1
2018-01-16< 7.0.30

php: Reflected XSS on PHAR 404 page

Medium 5.5
2018-08-02< 7.0.31

php: exif: Buffer over-read in exif_process_IFD_in_MAKERNOTE()

Medium 5.5
2018-01-16< 7.0.27

gd: Infinite loop in gdImageCreateFromGifCtx() in gd_gif_in.c

Medium 5.3
2016-09-12< 7.0.10

php: Memory Leakage In exif_process_IFD_in_TIFF

Medium 4.7
2018-04-29< 7.0.29

php: Dumpable FPM child processes allow bypassing opcache access controls

Medium 4.3
2016-05-22< 7.0.0

php: ZipArchive:: extractTo allows for directory traversal when creating directories

Low 2.3 Unfixed
2022-09-28≤ 7.0.33

phar wrapper can occur dos when using quine gzip file

N/A
2017-03-15< 7.0.15

N/A
2017-03-15< 7.0.15