Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27931
HistoryNov 20, 2020 - 3:05 a.m.

PHAR Unserialization

2020-11-2003:05:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.936 High

EPSS

Percentile

99.1%

pear/archive_tar is vulnerable to PHAR unserialization. The vulnerability exists due to the improper validation of filename that allows a filename that starts with PHAR:// to be executed.

References