[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2024-8925":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":27,"aliases":37,"duplicate_of":9,"upstream":38,"downstream":39,"duplicates":74,"related":75,"reserved_at":9,"published_at":85,"modified_at":86,"state":87,"summary":88,"references_raw":96,"kevs":112,"epss":113,"epss_history":116,"metrics":383,"affected":395},"CVE-2024-8925","In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, erroneous parsing of multipart form data contained in an HTTP POST request could lead to legitimate data not being processed. This could lead to malicious attacker able to control part of the submitted data being able to exclude portion of other data, potentially leading to erroneous application behavior.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-444","Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')","The product acts as an intermediary HTTP agent\n         (such as a proxy or firewall) in the data flow between two\n         entities such as a client and server, but it does not\n         interpret malformed HTTP requests or responses in ways that\n         are consistent with how the messages will be processed by\n         those entities that are at the ultimate destination.","weakness","Incomplete","Base",[19,23],{"id":20,"name":21,"techniques":22},"CAPEC-273","HTTP Response Smuggling",[],{"id":24,"name":25,"techniques":26},"CAPEC-33","HTTP Request Smuggling",[],[28],{"_key":29,"name":30,"source":31,"url":32,"maturity":33,"reliability_score":34,"verified":35,"type":9,"platforms":36,"requires_auth":9,"exploitdb":9,"metasploit":9},"GITHUB_PHP_PHP-SRC","Php Src","github","https://github.com/php/php-src/commit/fb58e69a84f4fde603a630d2c9df2fa3be16d846","poc",0.3,false,[],[],[],[40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72],{"_key":41},"SUSE-SU-2024:3732-1",{"_key":43},"SUSE-SU-2024:3664-1",{"_key":45},"SUSE-SU-2024:3729-1",{"_key":47},"SUSE-SU-2024:3733-1",{"_key":49},"OPENSUSE-SU-2024:14376-1",{"_key":51},"DLA-3920-1",{"_key":53},"DSA-5780-1",{"_key":55},"RHSA-2024:10949",{"_key":57},"RHSA-2024:10950",{"_key":59},"RHSA-2024:10951",{"_key":61},"RHSA-2024:10952",{"_key":63},"RHSA-2025:7315",{"_key":65},"USN-7049-1",{"_key":67},"USN-7049-3",{"_key":69},"UBUNTU-CVE-2024-8925",{"_key":71},"DEBIAN-CVE-2024-8925",{"_key":73},"USN-7049-2",[],[76,77,78,79,80,81,83],{"_key":41},{"_key":43},{"_key":45},{"_key":47},{"_key":49},{"_key":82},"CGA-9WCF-79V5-W8R7",{"_key":84},"CGA-33GW-Q7HR-G2JC","2024-10-08T03:35:02.673Z","2025-11-03T22:33:05.003Z","Modified",{"cisa_kev":35,"cisa_ransomware":35,"cisa_vendor":9,"epss_severity":89,"epss_score":90,"severity":91,"severity_score":92,"severity_version":93,"severity_source":94,"severity_vector":95,"severity_status":87},"low",0.01849,"medium",5.3,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N",[97,104,108],{"url":98,"sources":99,"tags":101},"https://github.com/php/php-src/security/advisories/GHSA-9pqp-7h25-4f32",[100,94],"cve.org",[102,103],"Exploit","Vendor Advisory",{"url":105,"sources":106,"tags":107},"https://security.netapp.com/advisory/ntap-20241101-0003/",[100,94],[],{"url":109,"sources":110,"tags":111},"https://lists.debian.org/debian-lts-announce/2024/10/msg00011.html",[100,94],[],[],{"date":114,"score":90,"percentile":115},"2026-06-04",0.83347,[117,121,124,127,130,133,136,139,142,145,148,151,154,157,160,164,167,170,174,177,180,183,185,187,190,193,196,199,202,205,208,211,214,217,219,222,225,228,231,234,236,238,241,244,247,250,253,256,259,262,265,268,271,273,277,280,283,286,289,292,295,299,302,306,309,311,314,316,319,322,325,328,331,334,337,340,343,346,349,352,355,358,361,364,367,370,372,374,377,380],{"date":118,"score":119,"percentile":120},"2025-11-04",0.01777,0.82074,{"date":122,"score":119,"percentile":123},"2025-11-05",0.82075,{"date":125,"score":119,"percentile":126},"2025-11-06",0.82079,{"date":128,"score":119,"percentile":129},"2025-11-07",0.82088,{"date":131,"score":119,"percentile":132},"2025-11-08",0.82097,{"date":134,"score":119,"percentile":135},"2025-11-09",0.82092,{"date":137,"score":119,"percentile":138},"2025-11-10",0.82085,{"date":140,"score":119,"percentile":141},"2025-11-11",0.82093,{"date":143,"score":119,"percentile":144},"2025-11-12",0.82104,{"date":146,"score":119,"percentile":147},"2025-11-13",0.82108,{"date":149,"score":119,"percentile":150},"2025-11-14",0.82112,{"date":152,"score":119,"percentile":153},"2025-11-15",0.82107,{"date":155,"score":119,"percentile":156},"2025-11-16",0.82109,{"date":158,"score":119,"percentile":159},"2025-11-17",0.82106,{"date":161,"score":162,"percentile":163},"2025-11-18",0.00355,0.54966,{"date":165,"score":162,"percentile":166},"2025-11-19",0.5498,{"date":168,"score":162,"percentile":169},"2025-11-20",0.5497,{"date":171,"score":172,"percentile":173},"2025-11-21",0.01602,0.81141,{"date":175,"score":172,"percentile":176},"2025-11-22",0.81145,{"date":178,"score":172,"percentile":179},"2025-11-23",0.81136,{"date":181,"score":119,"percentile":182},"2025-11-24",0.82114,{"date":184,"score":119,"percentile":147},"2025-11-25",{"date":186,"score":119,"percentile":156},"2025-11-26",{"date":188,"score":119,"percentile":189},"2025-11-27",0.82115,{"date":191,"score":119,"percentile":192},"2025-11-28",0.82103,{"date":194,"score":119,"percentile":195},"2025-11-29",0.82111,{"date":197,"score":119,"percentile":198},"2025-11-30",0.82116,{"date":200,"score":119,"percentile":201},"2025-12-01",0.82187,{"date":203,"score":119,"percentile":204},"2025-12-02",0.82189,{"date":206,"score":119,"percentile":207},"2025-12-03",0.82188,{"date":209,"score":119,"percentile":210},"2025-12-04",0.82113,{"date":212,"score":119,"percentile":213},"2025-12-05",0.8212,{"date":215,"score":119,"percentile":216},"2025-12-06",0.82117,{"date":218,"score":119,"percentile":189},"2025-12-07",{"date":220,"score":119,"percentile":221},"2025-12-08",0.82119,{"date":223,"score":119,"percentile":224},"2025-12-09",0.82138,{"date":226,"score":119,"percentile":227},"2025-12-10",0.82164,{"date":229,"score":119,"percentile":230},"2025-12-11",0.82182,{"date":232,"score":119,"percentile":233},"2025-12-12",0.82191,{"date":235,"score":119,"percentile":233},"2025-12-13",{"date":237,"score":119,"percentile":201},"2025-12-14",{"date":239,"score":119,"percentile":240},"2025-12-15",0.82184,{"date":242,"score":119,"percentile":243},"2025-12-16",0.82195,{"date":245,"score":119,"percentile":246},"2025-12-17",0.82201,{"date":248,"score":119,"percentile":249},"2025-12-18",0.82212,{"date":251,"score":119,"percentile":252},"2025-12-19",0.82216,{"date":254,"score":119,"percentile":255},"2025-12-20",0.8221,{"date":257,"score":119,"percentile":258},"2025-12-21",0.82208,{"date":260,"score":119,"percentile":261},"2025-12-22",0.82211,{"date":263,"score":119,"percentile":264},"2025-12-23",0.82214,{"date":266,"score":119,"percentile":267},"2025-12-24",0.82223,{"date":269,"score":119,"percentile":270},"2025-12-25",0.82239,{"date":272,"score":119,"percentile":270},"2025-12-26",{"date":274,"score":275,"percentile":276},"2025-12-27",0.01648,0.81585,{"date":278,"score":119,"percentile":279},"2025-12-28",0.82225,{"date":281,"score":119,"percentile":282},"2025-12-29",0.8222,{"date":284,"score":119,"percentile":285},"2025-12-30",0.82228,{"date":287,"score":119,"percentile":288},"2025-12-31",0.82241,{"date":290,"score":119,"percentile":291},"2026-01-01",0.82308,{"date":293,"score":119,"percentile":294},"2026-01-02",0.82303,{"date":296,"score":297,"percentile":298},"2026-01-03",0.01967,0.83157,{"date":300,"score":297,"percentile":301},"2026-01-04",0.83074,{"date":303,"score":304,"percentile":305},"2026-01-05",0.02283,0.84247,{"date":307,"score":119,"percentile":308},"2026-01-06",0.82217,{"date":310,"score":119,"percentile":308},"2026-01-07",{"date":312,"score":119,"percentile":313},"2026-01-08",0.82224,{"date":315,"score":119,"percentile":279},"2026-01-09",{"date":317,"score":172,"percentile":318},"2026-01-10",0.81274,{"date":320,"score":172,"percentile":321},"2026-01-11",0.81268,{"date":323,"score":172,"percentile":324},"2026-01-12",0.8126,{"date":326,"score":172,"percentile":327},"2026-01-13",0.81257,{"date":329,"score":172,"percentile":330},"2026-01-14",0.81279,{"date":332,"score":172,"percentile":333},"2026-01-15",0.81282,{"date":335,"score":172,"percentile":336},"2026-01-16",0.81292,{"date":338,"score":172,"percentile":339},"2026-01-17",0.81298,{"date":341,"score":172,"percentile":342},"2026-01-18",0.81289,{"date":344,"score":172,"percentile":345},"2026-01-19",0.81283,{"date":347,"score":172,"percentile":348},"2026-01-20",0.81285,{"date":350,"score":172,"percentile":351},"2026-01-21",0.81291,{"date":353,"score":172,"percentile":354},"2026-01-22",0.81299,{"date":356,"score":172,"percentile":357},"2026-01-23",0.81324,{"date":359,"score":119,"percentile":360},"2026-01-24",0.82278,{"date":362,"score":119,"percentile":363},"2026-01-25",0.82268,{"date":365,"score":119,"percentile":366},"2026-01-26",0.82266,{"date":368,"score":119,"percentile":369},"2026-01-27",0.82265,{"date":371,"score":119,"percentile":366},"2026-01-28",{"date":373,"score":119,"percentile":363},"2026-01-29",{"date":375,"score":119,"percentile":376},"2026-01-30",0.82276,{"date":378,"score":119,"percentile":379},"2026-01-31",0.82281,{"date":381,"score":119,"percentile":382},"2026-02-01",0.82356,[384,391],{"source":100,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":385,"cvss_v4_0":9},{"baseScore":386,"baseSeverity":387,"vectorString":388,"impactScore":389,"exploitabilityScore":390},3.1,"LOW","CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N",2.3,4.1,{"source":94,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":392,"cvss_v4_0":9},{"baseScore":92,"baseSeverity":393,"vectorString":95,"impactScore":389,"exploitabilityScore":394},"MEDIUM",10,[396,414],{"ecosystem":9,"name":397,"vendor":9,"product":397,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":398},"PHP",[399,406,410],{"version":400,"is_range":401,"range_type":100,"version_start":402,"version_start_type":403,"version_end":404,"version_end_type":405,"fixed_in":9},">= 8.1.*, \u003C 8.1.30",true,"8.1.*","including","8.1.30","excluding",{"version":407,"is_range":401,"range_type":100,"version_start":408,"version_start_type":403,"version_end":409,"version_end_type":405,"fixed_in":9},">= 8.2.*, \u003C 8.2.24","8.2.*","8.2.24",{"version":411,"is_range":401,"range_type":100,"version_start":412,"version_start_type":403,"version_end":413,"version_end_type":405,"fixed_in":9},">= 8.3.*, \u003C 8.3.12","8.3.*","8.3.12",{"ecosystem":9,"name":397,"vendor":9,"product":397,"cpe_part":9,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":415},[416,420,423],{"version":417,"is_range":401,"range_type":418,"version_start":419,"version_start_type":403,"version_end":404,"version_end_type":405,"fixed_in":9},"gte8.1.0_lt8.1.30","cpe","8.1.0",{"version":421,"is_range":401,"range_type":418,"version_start":422,"version_start_type":403,"version_end":409,"version_end_type":405,"fixed_in":9},"gte8.2.0_lt8.2.24","8.2.0",{"version":424,"is_range":401,"range_type":418,"version_start":425,"version_start_type":403,"version_end":413,"version_end_type":405,"fixed_in":9},"gte8.3.0_lt8.3.12","8.3.0"]