Two critical memory safety vulnerabilities in PHP’s image-processing functions can allow attackers to leak sensitive heap memory or execute denial-of-service attacks through specially crafted JPEG files. These flaws, discovered by Positive Technologies, affect versions of PHP prior to 8.1.34, 8.2.30, 8.3.29, 8.4.16, and 8.5.1, posing significant risks to public-facing upload endpoints and content management systems. Developers should urgently update their PHP installations to mitigate these vulnerabilities.
Read the full article at Cyber Security News
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.





