[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2020-7062":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":30,"duplicate_of":9,"upstream":31,"downstream":32,"duplicates":65,"related":66,"reserved_at":9,"published_at":75,"modified_at":76,"state":77,"summary":78,"references_raw":86,"kevs":130,"epss":131,"epss_history":134,"metrics":392,"affected":405},"CVE-2020-7062","In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-476","NULL Pointer Dereference","The product dereferences a pointer that it expects to be valid but is NULL.","weakness","Stable","Base","Medium",[],[21],{"_key":22,"name":23,"source":24,"url":25,"maturity":26,"reliability_score":27,"verified":28,"type":9,"platforms":29,"requires_auth":9,"exploitdb":9,"metasploit":9},"REF_722D753F73F98712","Exploit Reference (bugs.php.net)","reference","https://bugs.php.net/bug.php?id=79221","unknown",0.2,false,[],[],[],[33,35,37,39,41,43,45,47,49,51,53,55,57,59,61,63],{"_key":34},"SUSE-SU-2020:0622-1",{"_key":36},"SUSE-SU-2020:0647-1",{"_key":38},"SUSE-SU-2020:0658-1",{"_key":40},"SUSE-SU-2022:4067-1",{"_key":42},"OPENSUSE-SU-2020:0341-1",{"_key":44},"OPENSUSE-SU-2024:11167-1",{"_key":46},"OPENSUSE-SU-2024:11169-1",{"_key":48},"RHSA-2020:5275",{"_key":50},"DLA-2160-1",{"_key":52},"DSA-4717-1",{"_key":54},"DSA-4719-1",{"_key":56},"MGASA-2020-0119",{"_key":58},"UBUNTU-CVE-2020-7062",{"_key":60},"USN-4330-1",{"_key":62},"DEBIAN-CVE-2020-7062",{"_key":64},"RHSA-2020:3662",[],[67,68,69,70,71,72,73,74],{"_key":34},{"_key":36},{"_key":38},{"_key":40},{"_key":42},{"_key":44},{"_key":46},{"_key":56},"2020-02-27T20:25:15.153Z","2024-09-16T22:24:49.661Z","Modified",{"cisa_kev":28,"cisa_ransomware":28,"cisa_vendor":9,"epss_severity":79,"epss_score":80,"severity":81,"severity_score":82,"severity_version":83,"severity_source":84,"severity_vector":85,"severity_status":77},"low",0.01213,"high",7.5,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",[87,94,101,106,111,116,121,125],{"url":25,"sources":88,"tags":90},[84,89],"nvd",[91,92,93],"X Refsource MISC","Exploit","Vendor Advisory",{"url":95,"sources":96,"tags":97},"http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00023.html",[84,89],[93,98,99,100],"X Refsource SUSE","Mailing List","Third Party Advisory",{"url":102,"sources":103,"tags":104},"https://security.gentoo.org/glsa/202003-57",[84,89],[93,105,100],"X Refsource GENTOO",{"url":107,"sources":108,"tags":109},"https://lists.debian.org/debian-lts-announce/2020/03/msg00034.html",[84,89],[99,110,100],"X Refsource MLIST",{"url":112,"sources":113,"tags":114},"https://usn.ubuntu.com/4330-1/",[84,89],[93,115,100],"X Refsource UBUNTU",{"url":117,"sources":118,"tags":119},"https://www.debian.org/security/2020/dsa-4717",[84,89],[93,120,100],"X Refsource DEBIAN",{"url":122,"sources":123,"tags":124},"https://www.debian.org/security/2020/dsa-4719",[84,89],[93,120,100],{"url":126,"sources":127,"tags":128},"https://www.tenable.com/security/tns-2021-14",[84,89],[129,100],"X Refsource CONFIRM",[],{"date":132,"score":80,"percentile":133},"2026-06-04",0.79332,[135,139,142,145,148,151,154,157,159,162,165,168,171,174,177,181,184,186,189,192,195,198,201,204,207,209,212,215,218,221,224,227,229,232,234,236,239,242,245,248,250,253,256,259,261,264,267,270,272,275,278,281,284,287,291,294,297,300,303,306,308,311,313,316,319,322,325,328,331,334,336,338,340,343,347,350,353,355,358,361,363,366,369,372,375,378,380,383,386,389],{"date":136,"score":137,"percentile":138},"2025-11-04",0.012,0.78246,{"date":140,"score":137,"percentile":141},"2025-11-05",0.78247,{"date":143,"score":137,"percentile":144},"2025-11-06",0.78243,{"date":146,"score":137,"percentile":147},"2025-11-07",0.78256,{"date":149,"score":137,"percentile":150},"2025-11-08",0.78262,{"date":152,"score":137,"percentile":153},"2025-11-09",0.78257,{"date":155,"score":137,"percentile":156},"2025-11-10",0.78245,{"date":158,"score":137,"percentile":141},"2025-11-11",{"date":160,"score":137,"percentile":161},"2025-11-12",0.78263,{"date":163,"score":137,"percentile":164},"2025-11-13",0.78272,{"date":166,"score":137,"percentile":167},"2025-11-14",0.7828,{"date":169,"score":137,"percentile":170},"2025-11-15",0.78279,{"date":172,"score":137,"percentile":173},"2025-11-16",0.78282,{"date":175,"score":137,"percentile":176},"2025-11-17",0.78275,{"date":178,"score":179,"percentile":180},"2025-11-18",0.03535,0.86474,{"date":182,"score":179,"percentile":183},"2025-11-19",0.86475,{"date":185,"score":179,"percentile":183},"2025-11-20",{"date":187,"score":137,"percentile":188},"2025-11-21",0.78302,{"date":190,"score":137,"percentile":191},"2025-11-22",0.78303,{"date":193,"score":137,"percentile":194},"2025-11-23",0.78292,{"date":196,"score":137,"percentile":197},"2025-11-24",0.7829,{"date":199,"score":137,"percentile":200},"2025-11-25",0.78296,{"date":202,"score":137,"percentile":203},"2025-11-26",0.783,{"date":205,"score":137,"percentile":206},"2025-11-27",0.78304,{"date":208,"score":137,"percentile":200},"2025-11-28",{"date":210,"score":137,"percentile":211},"2025-11-29",0.78301,{"date":213,"score":137,"percentile":214},"2025-11-30",0.78299,{"date":216,"score":137,"percentile":217},"2025-12-01",0.78393,{"date":219,"score":137,"percentile":220},"2025-12-02",0.78401,{"date":222,"score":137,"percentile":223},"2025-12-03",0.78398,{"date":225,"score":137,"percentile":226},"2025-12-04",0.78297,{"date":228,"score":137,"percentile":191},"2025-12-05",{"date":230,"score":137,"percentile":231},"2025-12-06",0.78305,{"date":233,"score":137,"percentile":211},"2025-12-07",{"date":235,"score":137,"percentile":231},"2025-12-08",{"date":237,"score":137,"percentile":238},"2025-12-09",0.78322,{"date":240,"score":137,"percentile":241},"2025-12-10",0.78345,{"date":243,"score":137,"percentile":244},"2025-12-11",0.78361,{"date":246,"score":137,"percentile":247},"2025-12-12",0.78379,{"date":249,"score":137,"percentile":247},"2025-12-13",{"date":251,"score":137,"percentile":252},"2025-12-14",0.78377,{"date":254,"score":137,"percentile":255},"2025-12-15",0.78378,{"date":257,"score":137,"percentile":258},"2025-12-16",0.78388,{"date":260,"score":137,"percentile":223},"2025-12-17",{"date":262,"score":137,"percentile":263},"2025-12-18",0.78414,{"date":265,"score":137,"percentile":266},"2025-12-19",0.78425,{"date":268,"score":137,"percentile":269},"2025-12-20",0.78421,{"date":271,"score":137,"percentile":263},"2025-12-21",{"date":273,"score":137,"percentile":274},"2025-12-22",0.78418,{"date":276,"score":137,"percentile":277},"2025-12-23",0.78419,{"date":279,"score":137,"percentile":280},"2025-12-24",0.78431,{"date":282,"score":137,"percentile":283},"2025-12-25",0.78452,{"date":285,"score":137,"percentile":286},"2025-12-26",0.78451,{"date":288,"score":289,"percentile":290},"2025-12-27",0.00943,0.75775,{"date":292,"score":137,"percentile":293},"2025-12-28",0.78439,{"date":295,"score":137,"percentile":296},"2025-12-29",0.78436,{"date":298,"score":137,"percentile":299},"2025-12-30",0.78442,{"date":301,"score":137,"percentile":302},"2025-12-31",0.78455,{"date":304,"score":137,"percentile":305},"2026-01-01",0.78562,{"date":307,"score":137,"percentile":305},"2026-01-02",{"date":309,"score":137,"percentile":310},"2026-01-03",0.78558,{"date":312,"score":137,"percentile":283},"2026-01-04",{"date":314,"score":137,"percentile":315},"2026-01-05",0.78446,{"date":317,"score":137,"percentile":318},"2026-01-06",0.78454,{"date":320,"score":137,"percentile":321},"2026-01-07",0.7846,{"date":323,"score":137,"percentile":324},"2026-01-08",0.78469,{"date":326,"score":137,"percentile":327},"2026-01-09",0.78471,{"date":329,"score":137,"percentile":330},"2026-01-10",0.78474,{"date":332,"score":137,"percentile":333},"2026-01-11",0.78467,{"date":335,"score":137,"percentile":302},"2026-01-12",{"date":337,"score":137,"percentile":286},"2026-01-13",{"date":339,"score":137,"percentile":327},"2026-01-14",{"date":341,"score":137,"percentile":342},"2026-01-15",0.78473,{"date":344,"score":345,"percentile":346},"2026-01-16",0.01155,0.78092,{"date":348,"score":345,"percentile":349},"2026-01-17",0.78098,{"date":351,"score":345,"percentile":352},"2026-01-18",0.78093,{"date":354,"score":345,"percentile":346},"2026-01-19",{"date":356,"score":345,"percentile":357},"2026-01-20",0.78085,{"date":359,"score":345,"percentile":360},"2026-01-21",0.7809,{"date":362,"score":345,"percentile":349},"2026-01-22",{"date":364,"score":345,"percentile":365},"2026-01-23",0.78125,{"date":367,"score":345,"percentile":368},"2026-01-24",0.78137,{"date":370,"score":345,"percentile":371},"2026-01-25",0.78131,{"date":373,"score":345,"percentile":374},"2026-01-26",0.78123,{"date":376,"score":345,"percentile":377},"2026-01-27",0.78121,{"date":379,"score":345,"percentile":365},"2026-01-28",{"date":381,"score":345,"percentile":382},"2026-01-29",0.78122,{"date":384,"score":345,"percentile":385},"2026-01-30",0.78126,{"date":387,"score":345,"percentile":388},"2026-01-31",0.78128,{"date":390,"score":345,"percentile":391},"2026-02-01",0.78239,[393,398],{"source":84,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":394,"cvss_v4_0":9},{"baseScore":82,"baseSeverity":395,"vectorString":85,"impactScore":396,"exploitabilityScore":397},"HIGH",6,10,{"source":89,"cvss_v2_0":399,"cvss_v3_0":9,"cvss_v3_1":404,"cvss_v4_0":9},{"baseScore":400,"baseSeverity":9,"vectorString":401,"impactScore":402,"exploitabilityScore":403},4.3,"AV:N/AC:M/Au:N/C:N/I:N/A:P",2.9,8.6,{"baseScore":82,"baseSeverity":395,"vectorString":85,"impactScore":396,"exploitabilityScore":397},[406,423,434,440,458],{"ecosystem":9,"name":407,"vendor":408,"product":409,"cpe_part":410,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":411},"ubuntu linux","canonical","ubuntu_linux","o",[412,415,417,419,421],{"version":413,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"12.04","cpe",{"version":416,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04",{"version":418,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":420,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"version":422,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"19.10",{"ecosystem":9,"name":424,"vendor":425,"product":426,"cpe_part":410,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":427},"debian linux","debian","debian_linux",[428,430,432],{"version":429,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":431,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"version":433,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.0",{"ecosystem":9,"name":435,"vendor":436,"product":435,"cpe_part":410,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":437},"leap","opensuse",[438],{"version":439,"is_range":28,"range_type":414,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.1",{"ecosystem":9,"name":441,"vendor":9,"product":441,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":442},"PHP",[443,450,454],{"version":444,"is_range":445,"range_type":84,"version_start":446,"version_start_type":447,"version_end":448,"version_end_type":449,"fixed_in":9},">= 7.3.x, \u003C 7.3.15",true,"7.3.x","including","7.3.15","excluding",{"version":451,"is_range":445,"range_type":84,"version_start":452,"version_start_type":447,"version_end":453,"version_end_type":449,"fixed_in":9},">= 7.4.x, \u003C 7.4.3","7.4.x","7.4.3",{"version":455,"is_range":445,"range_type":84,"version_start":456,"version_start_type":447,"version_end":457,"version_end_type":449,"fixed_in":9},">= 7.2.x, \u003C 7.2.28","7.2.x","7.2.28",{"ecosystem":9,"name":441,"vendor":9,"product":441,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":459},[460,464,468],{"version":461,"is_range":445,"range_type":414,"version_start":462,"version_start_type":447,"version_end":463,"version_end_type":447,"fixed_in":9},"gte7.2.0_lte7.2.27","7.2.0","7.2.27",{"version":465,"is_range":445,"range_type":414,"version_start":466,"version_start_type":447,"version_end":467,"version_end_type":447,"fixed_in":9},"gte7.3.0_lte7.3.14","7.3.0","7.3.14",{"version":469,"is_range":445,"range_type":414,"version_start":470,"version_start_type":447,"version_end":471,"version_end_type":447,"fixed_in":9},"gte7.4.0_lte7.4.2","7.4.0","7.4.2"]