[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2019-9639":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T14:55:33.319Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":26,"aliases":36,"duplicate_of":9,"upstream":37,"downstream":38,"duplicates":67,"related":68,"reserved_at":9,"published_at":75,"modified_at":76,"state":77,"summary":78,"references_raw":86,"kevs":152,"epss":153,"epss_history":156,"metrics":397,"affected":407},"CVE-2019-9639","An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There is an uninitialized read in exif_process_IFD_in_MAKERNOTE because of mishandling the data_len variable.",null,[11,20],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-908","Use of Uninitialized Resource","The product uses or accesses a resource that has not been initialized.","weakness","Incomplete","Base","Medium",[],{"_key":21,"id":21,"name":22,"description":23,"type":15,"status":16,"abstraction":24,"likelihood_of_exploit":18,"capec":25},"CWE-909","Missing Initialization of Resource","The product does not initialize a critical resource.","Class",[],[27],{"_key":28,"name":29,"source":30,"url":31,"maturity":32,"reliability_score":33,"verified":34,"type":9,"platforms":35,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_99674BC7D22F5865","Exploit Reference (bugs.php.net)","reference","https://bugs.php.net/bug.php?id=77659","unknown",0.2,false,[],[],[],[39,41,43,45,47,49,51,53,55,57,59,61,63,65],{"_key":40},"SUSE-SU-2019:0988-1",{"_key":42},"SUSE-SU-2019:1325-1",{"_key":44},"SUSE-SU-2019:14013-1",{"_key":46},"SUSE-SU-2019:1461-1",{"_key":48},"OPENSUSE-SU-2019:1572-1",{"_key":50},"OPENSUSE-SU-2019:1573-1",{"_key":52},"RHSA-2020:1624",{"_key":54},"DLA-1741-1",{"_key":56},"DSA-4403-1",{"_key":58},"UBUNTU-CVE-2019-9639",{"_key":60},"USN-3922-1",{"_key":62},"USN-3922-2",{"_key":64},"RHSA-2019:2519",{"_key":66},"RHSA-2019:3299",[],[69,70,71,72,73,74],{"_key":40},{"_key":42},{"_key":44},{"_key":46},{"_key":48},{"_key":50},"2019-03-08T23:00:00.000Z","2024-08-04T21:54:45.448Z","Modified",{"cisa_kev":34,"cisa_ransomware":34,"cisa_vendor":9,"epss_severity":79,"epss_score":80,"severity":81,"severity_score":82,"severity_version":83,"severity_source":84,"severity_vector":85,"severity_status":77},"medium",0.14536,"high",7.5,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",[87,95,102,107,112,116,120,125,131,135,139,143,148],{"url":88,"sources":89,"tags":91},"https://www.debian.org/security/2019/dsa-4403",[90,84],"cve.org",[92,93,94],"Vendor Advisory","X Refsource DEBIAN","Third Party Advisory",{"url":31,"sources":96,"tags":97},[90,84],[98,99,100,101,92],"X Refsource MISC","Exploit","Issue Tracking","Mailing List",{"url":103,"sources":104,"tags":105},"https://usn.ubuntu.com/3922-1/",[90,84],[92,106,94],"X Refsource UBUNTU",{"url":108,"sources":109,"tags":110},"https://lists.debian.org/debian-lts-announce/2019/03/msg00043.html",[90,84],[101,111,94],"X Refsource MLIST",{"url":113,"sources":114,"tags":115},"https://usn.ubuntu.com/3922-2/",[90,84],[92,106,94],{"url":117,"sources":118,"tags":119},"https://usn.ubuntu.com/3922-3/",[90,84],[92,106,94],{"url":121,"sources":122,"tags":123},"http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00104.html",[90,84],[92,124,101,94],"X Refsource SUSE",{"url":126,"sources":127,"tags":128},"https://security.netapp.com/advisory/ntap-20190502-0007/",[90,84],[129,130,94],"X Refsource CONFIRM","Patch",{"url":132,"sources":133,"tags":134},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00012.html",[90,84],[92,124,101,94],{"url":136,"sources":137,"tags":138},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00041.html",[90,84],[92,124,101,94],{"url":140,"sources":141,"tags":142},"http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00044.html",[90,84],[92,124,101,94],{"url":144,"sources":145,"tags":146},"https://access.redhat.com/errata/RHSA-2019:2519",[90,84],[92,147,94],"X Refsource REDHAT",{"url":149,"sources":150,"tags":151},"https://access.redhat.com/errata/RHSA-2019:3299",[90,84],[92,147,94],[],{"date":154,"score":80,"percentile":155},"2026-06-04",0.94582,[157,161,164,167,170,172,174,176,179,182,184,187,189,191,194,198,201,204,207,210,212,214,217,220,223,225,228,231,235,238,240,242,245,247,250,253,256,259,262,265,268,271,274,277,280,283,286,289,291,294,297,300,303,305,309,311,313,315,318,322,325,328,330,333,335,337,339,341,343,345,347,350,352,354,357,360,362,365,368,371,373,376,378,380,382,384,387,390,392,394],{"date":158,"score":159,"percentile":160},"2025-11-04",0.18274,0.94926,{"date":162,"score":159,"percentile":163},"2025-11-05",0.94927,{"date":165,"score":159,"percentile":166},"2025-11-06",0.94928,{"date":168,"score":159,"percentile":169},"2025-11-07",0.9493,{"date":171,"score":159,"percentile":166},"2025-11-08",{"date":173,"score":159,"percentile":163},"2025-11-09",{"date":175,"score":159,"percentile":163},"2025-11-10",{"date":177,"score":159,"percentile":178},"2025-11-11",0.94929,{"date":180,"score":159,"percentile":181},"2025-11-12",0.94932,{"date":183,"score":159,"percentile":181},"2025-11-13",{"date":185,"score":159,"percentile":186},"2025-11-14",0.94934,{"date":188,"score":159,"percentile":178},"2025-11-15",{"date":190,"score":159,"percentile":181},"2025-11-16",{"date":192,"score":159,"percentile":193},"2025-11-17",0.94933,{"date":195,"score":196,"percentile":197},"2025-11-18",0.10128,0.92319,{"date":199,"score":196,"percentile":200},"2025-11-19",0.92322,{"date":202,"score":196,"percentile":203},"2025-11-20",0.92327,{"date":205,"score":159,"percentile":206},"2025-11-21",0.94938,{"date":208,"score":159,"percentile":209},"2025-11-22",0.94937,{"date":211,"score":159,"percentile":209},"2025-11-23",{"date":213,"score":159,"percentile":206},"2025-11-24",{"date":215,"score":159,"percentile":216},"2025-11-25",0.9494,{"date":218,"score":159,"percentile":219},"2025-11-26",0.94942,{"date":221,"score":159,"percentile":222},"2025-11-27",0.94944,{"date":224,"score":159,"percentile":219},"2025-11-28",{"date":226,"score":159,"percentile":227},"2025-11-29",0.94946,{"date":229,"score":159,"percentile":230},"2025-11-30",0.94945,{"date":232,"score":233,"percentile":234},"2025-12-01",0.13838,0.94071,{"date":236,"score":233,"percentile":237},"2025-12-02",0.94072,{"date":239,"score":233,"percentile":237},"2025-12-03",{"date":241,"score":159,"percentile":227},"2025-12-04",{"date":243,"score":159,"percentile":244},"2025-12-05",0.9495,{"date":246,"score":159,"percentile":244},"2025-12-06",{"date":248,"score":159,"percentile":249},"2025-12-07",0.94955,{"date":251,"score":159,"percentile":252},"2025-12-08",0.94954,{"date":254,"score":159,"percentile":255},"2025-12-09",0.94958,{"date":257,"score":159,"percentile":258},"2025-12-10",0.94963,{"date":260,"score":159,"percentile":261},"2025-12-11",0.94966,{"date":263,"score":159,"percentile":264},"2025-12-12",0.94968,{"date":266,"score":159,"percentile":267},"2025-12-13",0.94967,{"date":269,"score":159,"percentile":270},"2025-12-14",0.94965,{"date":272,"score":159,"percentile":273},"2025-12-15",0.94969,{"date":275,"score":159,"percentile":276},"2025-12-16",0.9497,{"date":278,"score":159,"percentile":279},"2025-12-17",0.94973,{"date":281,"score":159,"percentile":282},"2025-12-18",0.94976,{"date":284,"score":159,"percentile":285},"2025-12-19",0.94977,{"date":287,"score":159,"percentile":288},"2025-12-20",0.94978,{"date":290,"score":159,"percentile":285},"2025-12-21",{"date":292,"score":293,"percentile":169},"2025-12-22",0.18,{"date":295,"score":293,"percentile":296},"2025-12-23",0.94931,{"date":298,"score":293,"percentile":299},"2025-12-24",0.94935,{"date":301,"score":293,"percentile":302},"2025-12-25",0.94941,{"date":304,"score":293,"percentile":302},"2025-12-26",{"date":306,"score":307,"percentile":308},"2025-12-27",0.10257,0.92945,{"date":310,"score":293,"percentile":209},"2025-12-28",{"date":312,"score":293,"percentile":209},"2025-12-29",{"date":314,"score":293,"percentile":216},"2025-12-30",{"date":316,"score":293,"percentile":317},"2025-12-31",0.94943,{"date":319,"score":320,"percentile":321},"2026-01-01",0.13617,0.94061,{"date":323,"score":320,"percentile":324},"2026-01-02",0.94057,{"date":326,"score":320,"percentile":327},"2026-01-03",0.94053,{"date":329,"score":293,"percentile":209},"2026-01-04",{"date":331,"score":293,"percentile":332},"2026-01-05",0.94936,{"date":334,"score":293,"percentile":299},"2026-01-06",{"date":336,"score":293,"percentile":332},"2026-01-07",{"date":338,"score":293,"percentile":302},"2026-01-08",{"date":340,"score":293,"percentile":219},"2026-01-09",{"date":342,"score":293,"percentile":219},"2026-01-10",{"date":344,"score":293,"percentile":302},"2026-01-11",{"date":346,"score":293,"percentile":216},"2026-01-12",{"date":348,"score":293,"percentile":349},"2026-01-13",0.94939,{"date":351,"score":293,"percentile":317},"2026-01-14",{"date":353,"score":293,"percentile":222},"2026-01-15",{"date":355,"score":293,"percentile":356},"2026-01-16",0.94948,{"date":358,"score":293,"percentile":359},"2026-01-17",0.94949,{"date":361,"score":293,"percentile":359},"2026-01-18",{"date":363,"score":293,"percentile":364},"2026-01-19",0.94947,{"date":366,"score":293,"percentile":367},"2026-01-20",0.94951,{"date":369,"score":293,"percentile":370},"2026-01-21",0.94952,{"date":372,"score":293,"percentile":249},"2026-01-22",{"date":374,"score":293,"percentile":375},"2026-01-23",0.9496,{"date":377,"score":293,"percentile":270},"2026-01-24",{"date":379,"score":293,"percentile":273},"2026-01-25",{"date":381,"score":293,"percentile":276},"2026-01-26",{"date":383,"score":293,"percentile":276},"2026-01-27",{"date":385,"score":293,"percentile":386},"2026-01-28",0.94972,{"date":388,"score":293,"percentile":389},"2026-01-29",0.94975,{"date":391,"score":293,"percentile":389},"2026-01-30",{"date":393,"score":293,"percentile":282},"2026-01-31",{"date":395,"score":320,"percentile":396},"2026-02-01",0.94088,[398],{"source":84,"cvss_v2_0":399,"cvss_v3_0":9,"cvss_v3_1":404,"cvss_v4_0":9},{"baseScore":400,"baseSeverity":9,"vectorString":401,"impactScore":402,"exploitabilityScore":403},5,"AV:N/AC:L/Au:N/C:P/I:N/A:N",2.9,10,{"baseScore":82,"baseSeverity":405,"vectorString":85,"impactScore":406,"exploitabilityScore":403},"HIGH",6,[408,425,434,442,452,469],{"ecosystem":9,"name":409,"vendor":410,"product":411,"cpe_part":412,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":413},"ubuntu linux","canonical","ubuntu_linux","o",[414,417,419,421,423],{"version":415,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.04","cpe",{"version":418,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04",{"version":420,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":422,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"version":424,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.10",{"ecosystem":9,"name":426,"vendor":427,"product":428,"cpe_part":412,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":429},"debian linux","debian","debian_linux",[430,432],{"version":431,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":433,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":9,"name":435,"vendor":436,"product":437,"cpe_part":438,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":439},"storage automation store","netapp","storage_automation_store","a",[440],{"version":441,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"na",{"ecosystem":9,"name":443,"vendor":444,"product":443,"cpe_part":412,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":445},"leap","opensuse",[446,448,450],{"version":447,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.0",{"version":449,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.1",{"version":451,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"42.3",{"ecosystem":9,"name":453,"vendor":9,"product":453,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":454},"PHP",[455,460,465],{"version":456,"is_range":457,"range_type":416,"version_start":9,"version_start_type":9,"version_end":458,"version_end_type":459,"fixed_in":9},"lt7.1.27",true,"7.1.27","excluding",{"version":461,"is_range":457,"range_type":416,"version_start":462,"version_start_type":463,"version_end":464,"version_end_type":459,"fixed_in":9},"gte7.2.0_lt7.2.16","7.2.0","including","7.2.16",{"version":466,"is_range":457,"range_type":416,"version_start":467,"version_start_type":463,"version_end":468,"version_end_type":459,"fixed_in":9},"gte7.3.0_lt7.3.3","7.3.0","7.3.3",{"ecosystem":9,"name":470,"vendor":471,"product":472,"cpe_part":438,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":473},"software collections","redhat","software_collections",[474],{"version":475,"is_range":34,"range_type":416,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"1.0"]