[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2019-11034":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":23,"aliases":24,"duplicate_of":9,"upstream":25,"downstream":26,"duplicates":61,"related":62,"reserved_at":9,"published_at":72,"modified_at":73,"state":74,"summary":75,"references_raw":84,"kevs":154,"epss":155,"epss_history":158,"metrics":413,"affected":431},"CVE-2019-11034","When processing certain files, PHP EXIF extension in versions 7.1.x below 7.1.28, 7.2.x below 7.2.17 and 7.3.x below 7.3.4 can be caused to read past allocated buffer in exif_process_IFD_TAG function. This may lead to information disclosure or crash.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-125","Out-of-bounds Read","The product reads data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base",[19],{"id":20,"name":21,"techniques":22},"CAPEC-540","Overread Buffers",[],[],[],[],[27,29,31,33,35,37,39,41,43,45,47,49,51,53,55,57,59],{"_key":28},"SUSE-SU-2019:1325-1",{"_key":30},"SUSE-SU-2019:1360-1",{"_key":32},"SUSE-SU-2019:1365-1",{"_key":34},"SUSE-SU-2019:1461-1",{"_key":36},"SUSE-SU-2022:4067-1",{"_key":38},"OPENSUSE-SU-2019:1572-1",{"_key":40},"OPENSUSE-SU-2019:1573-1",{"_key":42},"OPENSUSE-SU-2024:11167-1",{"_key":44},"OPENSUSE-SU-2024:11169-1",{"_key":46},"RHSA-2020:1624",{"_key":48},"DLA-1803-1",{"_key":50},"DSA-4529-1",{"_key":52},"UBUNTU-CVE-2019-11034",{"_key":54},"USN-3953-1",{"_key":56},"USN-3953-2",{"_key":58},"RHSA-2019:2519",{"_key":60},"RHSA-2019:3299",[],[63,64,65,66,67,68,69,70,71],{"_key":28},{"_key":30},{"_key":32},{"_key":34},{"_key":36},{"_key":38},{"_key":40},{"_key":42},{"_key":44},"2019-04-18T16:57:00.954Z","2024-09-17T02:31:25.024Z","Modified",{"cisa_kev":76,"cisa_ransomware":76,"cisa_vendor":9,"epss_severity":77,"epss_score":78,"severity":79,"severity_score":80,"severity_version":81,"severity_source":82,"severity_vector":83,"severity_status":74},false,"low",0.02738,"critical",9.1,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",[85,93,99,103,108,112,118,123,127,131,135,140,145,150],{"url":86,"sources":87,"tags":89},"https://bugs.php.net/bug.php?id=77753",[88,82],"cve.org",[90,91,92],"X Refsource MISC","Patch","Vendor Advisory",{"url":94,"sources":95,"tags":96},"https://usn.ubuntu.com/3953-1/",[88,82],[92,97,98],"X Refsource UBUNTU","Third Party Advisory",{"url":100,"sources":101,"tags":102},"https://usn.ubuntu.com/3953-2/",[88,82],[92,97,98],{"url":104,"sources":105,"tags":106},"https://security.netapp.com/advisory/ntap-20190502-0001/",[88,82],[107,98],"X Refsource CONFIRM",{"url":109,"sources":110,"tags":111},"https://support.f5.com/csp/article/K44590877",[88,82],[107,98],{"url":113,"sources":114,"tags":115},"https://lists.debian.org/debian-lts-announce/2019/05/msg00035.html",[88,82],[116,117,98],"Mailing List","X Refsource MLIST",{"url":119,"sources":120,"tags":121},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00010.html",[88,82],[92,122,116,98],"X Refsource SUSE",{"url":124,"sources":125,"tags":126},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00012.html",[88,82],[92,122,116,98],{"url":128,"sources":129,"tags":130},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00041.html",[88,82],[92,122,116,98],{"url":132,"sources":133,"tags":134},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00044.html",[88,82],[92,122,116,98],{"url":136,"sources":137,"tags":138},"https://access.redhat.com/errata/RHSA-2019:2519",[88,82],[92,139,98],"X Refsource REDHAT",{"url":141,"sources":142,"tags":143},"https://www.debian.org/security/2019/dsa-4529",[88,82],[92,144,98],"X Refsource DEBIAN",{"url":146,"sources":147,"tags":148},"https://seclists.org/bugtraq/2019/Sep/38",[88,82],[116,149,98],"X Refsource BUGTRAQ",{"url":151,"sources":152,"tags":153},"https://access.redhat.com/errata/RHSA-2019:3299",[88,82],[92,139,98],[],{"date":156,"score":78,"percentile":157},"2026-06-04",0.8625,[159,163,166,168,171,174,177,179,181,184,187,190,193,196,199,203,206,209,212,215,217,219,221,223,226,229,232,235,238,241,244,247,250,252,255,257,260,263,266,269,272,275,278,281,284,287,290,292,295,298,300,303,306,310,314,317,320,323,326,329,332,335,337,340,343,345,348,350,353,356,359,361,364,366,369,372,375,377,379,382,385,388,391,394,397,399,402,405,408,410],{"date":160,"score":161,"percentile":162},"2025-11-04",0.03318,0.86746,{"date":164,"score":161,"percentile":165},"2025-11-05",0.86749,{"date":167,"score":161,"percentile":162},"2025-11-06",{"date":169,"score":161,"percentile":170},"2025-11-07",0.86755,{"date":172,"score":161,"percentile":173},"2025-11-08",0.86758,{"date":175,"score":161,"percentile":176},"2025-11-09",0.86752,{"date":178,"score":161,"percentile":176},"2025-11-10",{"date":180,"score":161,"percentile":173},"2025-11-11",{"date":182,"score":161,"percentile":183},"2025-11-12",0.86764,{"date":185,"score":161,"percentile":186},"2025-11-13",0.8677,{"date":188,"score":161,"percentile":189},"2025-11-14",0.86772,{"date":191,"score":161,"percentile":192},"2025-11-15",0.86767,{"date":194,"score":161,"percentile":195},"2025-11-16",0.86769,{"date":197,"score":161,"percentile":198},"2025-11-17",0.86765,{"date":200,"score":201,"percentile":202},"2025-11-18",0.10977,0.92697,{"date":204,"score":201,"percentile":205},"2025-11-19",0.927,{"date":207,"score":201,"percentile":208},"2025-11-20",0.92704,{"date":210,"score":161,"percentile":211},"2025-11-21",0.8678,{"date":213,"score":161,"percentile":214},"2025-11-22",0.86775,{"date":216,"score":161,"percentile":186},"2025-11-23",{"date":218,"score":161,"percentile":195},"2025-11-24",{"date":220,"score":161,"percentile":195},"2025-11-25",{"date":222,"score":161,"percentile":195},"2025-11-26",{"date":224,"score":161,"percentile":225},"2025-11-27",0.86771,{"date":227,"score":161,"percentile":228},"2025-11-28",0.86757,{"date":230,"score":161,"percentile":231},"2025-11-29",0.8683,{"date":233,"score":161,"percentile":234},"2025-11-30",0.86828,{"date":236,"score":161,"percentile":237},"2025-12-01",0.86886,{"date":239,"score":161,"percentile":240},"2025-12-02",0.86889,{"date":242,"score":161,"percentile":243},"2025-12-03",0.86888,{"date":245,"score":161,"percentile":246},"2025-12-04",0.86827,{"date":248,"score":161,"percentile":249},"2025-12-05",0.86831,{"date":251,"score":161,"percentile":234},"2025-12-06",{"date":253,"score":161,"percentile":254},"2025-12-07",0.86823,{"date":256,"score":161,"percentile":254},"2025-12-08",{"date":258,"score":161,"percentile":259},"2025-12-09",0.86832,{"date":261,"score":161,"percentile":262},"2025-12-10",0.86852,{"date":264,"score":161,"percentile":265},"2025-12-11",0.86858,{"date":267,"score":161,"percentile":268},"2025-12-12",0.86863,{"date":270,"score":161,"percentile":271},"2025-12-13",0.8686,{"date":273,"score":161,"percentile":274},"2025-12-14",0.86854,{"date":276,"score":161,"percentile":277},"2025-12-15",0.86853,{"date":279,"score":161,"percentile":280},"2025-12-16",0.86861,{"date":282,"score":161,"percentile":283},"2025-12-17",0.86864,{"date":285,"score":161,"percentile":286},"2025-12-18",0.86873,{"date":288,"score":161,"percentile":289},"2025-12-19",0.86874,{"date":291,"score":161,"percentile":289},"2025-12-20",{"date":293,"score":161,"percentile":294},"2025-12-21",0.86875,{"date":296,"score":161,"percentile":297},"2025-12-22",0.86871,{"date":299,"score":161,"percentile":286},"2025-12-23",{"date":301,"score":161,"percentile":302},"2025-12-24",0.86881,{"date":304,"score":161,"percentile":305},"2025-12-25",0.86894,{"date":307,"score":308,"percentile":309},"2025-12-26",0.0279,0.85651,{"date":311,"score":312,"percentile":313},"2025-12-27",0.01858,0.82627,{"date":315,"score":308,"percentile":316},"2025-12-28",0.85644,{"date":318,"score":308,"percentile":319},"2025-12-29",0.85641,{"date":321,"score":308,"percentile":322},"2025-12-30",0.85648,{"date":324,"score":308,"percentile":325},"2025-12-31",0.85657,{"date":327,"score":308,"percentile":328},"2026-01-01",0.85714,{"date":330,"score":308,"percentile":331},"2026-01-02",0.85717,{"date":333,"score":308,"percentile":334},"2026-01-03",0.85715,{"date":336,"score":308,"percentile":325},"2026-01-04",{"date":338,"score":308,"percentile":339},"2026-01-05",0.85653,{"date":341,"score":308,"percentile":342},"2026-01-06",0.85656,{"date":344,"score":308,"percentile":342},"2026-01-07",{"date":346,"score":308,"percentile":347},"2026-01-08",0.85666,{"date":349,"score":308,"percentile":347},"2026-01-09",{"date":351,"score":308,"percentile":352},"2026-01-10",0.85663,{"date":354,"score":308,"percentile":355},"2026-01-11",0.85659,{"date":357,"score":308,"percentile":358},"2026-01-12",0.85654,{"date":360,"score":308,"percentile":322},"2026-01-13",{"date":362,"score":308,"percentile":363},"2026-01-14",0.85665,{"date":365,"score":308,"percentile":363},"2026-01-15",{"date":367,"score":308,"percentile":368},"2026-01-16",0.85671,{"date":370,"score":308,"percentile":371},"2026-01-17",0.85676,{"date":373,"score":308,"percentile":374},"2026-01-18",0.85673,{"date":376,"score":308,"percentile":368},"2026-01-19",{"date":378,"score":308,"percentile":374},"2026-01-20",{"date":380,"score":308,"percentile":381},"2026-01-21",0.85677,{"date":383,"score":308,"percentile":384},"2026-01-22",0.85682,{"date":386,"score":308,"percentile":387},"2026-01-23",0.85694,{"date":389,"score":308,"percentile":390},"2026-01-24",0.85703,{"date":392,"score":308,"percentile":393},"2026-01-25",0.85699,{"date":395,"score":308,"percentile":396},"2026-01-26",0.85698,{"date":398,"score":308,"percentile":390},"2026-01-27",{"date":400,"score":308,"percentile":401},"2026-01-28",0.85708,{"date":403,"score":308,"percentile":404},"2026-01-29",0.85711,{"date":406,"score":308,"percentile":407},"2026-01-30",0.85713,{"date":409,"score":308,"percentile":334},"2026-01-31",{"date":411,"score":78,"percentile":412},"2026-02-01",0.85664,[414,421],{"source":88,"cvss_v2_0":9,"cvss_v3_0":415,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":416,"baseSeverity":417,"vectorString":418,"impactScore":419,"exploitabilityScore":420},4.8,"MEDIUM","CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L",4.2,5.6,{"source":82,"cvss_v2_0":422,"cvss_v3_0":427,"cvss_v3_1":428,"cvss_v4_0":9},{"baseScore":423,"baseSeverity":9,"vectorString":424,"impactScore":425,"exploitabilityScore":426},6.4,"AV:N/AC:L/Au:N/C:P/I:N/A:P",4.9,10,{"baseScore":416,"baseSeverity":417,"vectorString":418,"impactScore":419,"exploitabilityScore":420},{"baseScore":80,"baseSeverity":429,"vectorString":83,"impactScore":430,"exploitabilityScore":426},"CRITICAL",8.7,[432,451,460,468,478,496,507],{"ecosystem":9,"name":433,"vendor":434,"product":435,"cpe_part":436,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":437},"ubuntu linux","canonical","ubuntu_linux","o",[438,441,443,445,447,449],{"version":439,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.04","cpe",{"version":442,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04",{"version":444,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":446,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"version":448,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.10",{"version":450,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"19.04",{"ecosystem":9,"name":452,"vendor":453,"product":454,"cpe_part":436,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":455},"debian linux","debian","debian_linux",[456,458],{"version":457,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":459,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":9,"name":461,"vendor":462,"product":463,"cpe_part":464,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":465},"storage automation store","netapp","storage_automation_store","a",[466],{"version":467,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"na",{"ecosystem":9,"name":469,"vendor":470,"product":469,"cpe_part":436,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":471},"leap","opensuse",[472,474,476],{"version":473,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.0",{"version":475,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.1",{"version":477,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"42.3",{"ecosystem":9,"name":479,"vendor":9,"product":479,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":480},"PHP",[481,488,492],{"version":482,"is_range":483,"range_type":88,"version_start":484,"version_start_type":485,"version_end":486,"version_end_type":487,"fixed_in":9},">= 7.1.x, \u003C 7.1.28",true,"7.1.x","including","7.1.28","excluding",{"version":489,"is_range":483,"range_type":88,"version_start":490,"version_start_type":485,"version_end":491,"version_end_type":487,"fixed_in":9},">= 7.2.x, \u003C 7.2.17","7.2.x","7.2.17",{"version":493,"is_range":483,"range_type":88,"version_start":494,"version_start_type":485,"version_end":495,"version_end_type":487,"fixed_in":9},">= 7.3.x, \u003C 7.3.4","7.3.x","7.3.4",{"ecosystem":9,"name":479,"vendor":9,"product":479,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":497},[498,501,504],{"version":499,"is_range":483,"range_type":440,"version_start":500,"version_start_type":485,"version_end":486,"version_end_type":487,"fixed_in":9},"gte7.1.0_lt7.1.28","7.1.0",{"version":502,"is_range":483,"range_type":440,"version_start":503,"version_start_type":485,"version_end":491,"version_end_type":487,"fixed_in":9},"gte7.2.9_lt7.2.17","7.2.9",{"version":505,"is_range":483,"range_type":440,"version_start":506,"version_start_type":485,"version_end":495,"version_end_type":487,"fixed_in":9},"gte7.3.0_lt7.3.4","7.3.0",{"ecosystem":9,"name":508,"vendor":509,"product":510,"cpe_part":464,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":511},"software collections","redhat","software_collections",[512],{"version":513,"is_range":76,"range_type":440,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0"]