
Security Advisories for zendframework/zendframework1 in packagist
Critical
over 1 year ago
Zendframework1 Potential SQL injection in ORDER and GROUP functions
packagist
zendframework/zendframework1
High
over 1 year ago
Zendframework Potential Information Disclosure and Insufficient Entropy vulnerability
packagist
zendframework/zendframework1
High
over 1 year ago
ZendFramework1 Potential Insufficient Entropy Vulnerability
packagist
zendframework/zendframework1
Critical
over 1 year ago
Zendframework1 potential SQL injection vector using null byte for PDO (MsSql, SQLite)
packagist
zendframework/zendframework1
Critical
over 1 year ago
ZendFramework1 Potential SQL injection in the ORDER implementation of Zend_Db_Select
packagist
zendframework/zendframework1
High
over 1 year ago
Zendframework potential security issue in login mechanism
packagist
zendframework/zendframework1
Moderate
over 1 year ago
Zend_Filter_StripTags vulnerable to Cross-site Scripting when comments allowed
packagist
zendframework/zendframework1
Moderate
over 1 year ago
Zendframework potential Cross-site Scripting vector in `Zend_Service_ReCaptcha_MailHide`
packagist
zendframework/zendframework1
Moderate
over 1 year ago
Zendframework Potential XSS or HTML Injection vector in Zend_Json
packagist
zendframework/zendframework1
Moderate
over 1 year ago
ZendFramework1 Potential Security Issues in Bundled Dojo Library
packagist
zendframework/zendframework1
High
over 1 year ago
Zendframework Local file disclosure via XXE injection in Zend_XmlRpc
packagist
zendframework/zendframework1
High
over 1 year ago
Zendframework Denial of Service vector via XEE injection
packagist
zendframework/zendframework1
Moderate
over 1 year ago
ZendFramework Cross-site Scripting vector in `Zend_Filter_StripTags`
packagist
zendframework/zendframework1
Moderate
over 1 year ago
ZendFramework Potential Cross-site Scripting in Development Environment Error View Script
packagist
zendframework/zendframework1
Critical
over 1 year ago
ZendFramework potential XML eXternal Entity injection vectors
packagist
zendframework/zendframework1
High
over 1 year ago
ZendFramework potential XML eXternal Entity injection vectors
packagist
zendframework/zendframework1
Moderate
over 1 year ago
ZendFramework potential Cross-site Scripting vectors due to inconsistent encodings
packagist
zendframework/zendframework1
Critical
over 1 year ago
ZendFramework potential SQL Injection Vector When Using PDO_MySql
packagist
zendframework/zendframework1
Moderate
over 1 year ago
ZendFramework potential Cross-site Scripting vector in `Zend_Dojo_View_Helper_Editor`
packagist
zendframework/zendframework1
High
over 1 year ago
ZendFramework local file inclusion vector in `Zend_View::setScriptPath()` and `render()`
packagist
zendframework/zendframework1
Critical
over 1 year ago
Zend Framework SQL injection vulnerability
packagist
zendframework/zendframework, zendframework/zend-db, zendframework/zendframework1
High
over 3 years ago
Doctrine Security Misconfiguration Vulnerability
packagist
zendframework/zend-cache, zendframework/zendframework1, doctrine/mongodb-odm-bundle, doctrine/mongodb-odm, doctrine/orm, doctrine/common, doctrine/cache, doctrine/annotations
Critical
over 3 years ago
Zend Framework SQL injection vector using null byte for PDO
packagist
zendframework/zendframework1
Moderate
over 3 years ago
ZendXml and Zend Framework contain XXE and XEE Vulnerabilities
packagist
zendframework/zendframework, zendframework/zendxml, zendframework/zendframework1
Moderate
over 3 years ago
Zend Access Restriction Bypass
packagist
zendframework/zendframework1, zendframework/zendframework
Moderate
over 3 years ago
Several Zend Products Vulnerable to XXE and XEE attacks
packagist
zendframework/zendservice-api, zendframework/zendservice-amazon, zendframework/zendservice-windowsazure, zendframework/zendservice-technorati, zendframework/zendservice-slideshare, zendframework/zendservice-nirvanix, zendframework/zendservice-audioscrobbler, zendframework/zendrest, zendframework/zendopenid, zendframework/zendframework1
Moderate
over 3 years ago
Several Zend Products Vulnerable to XXE and XEE attacks
packagist
zendframework/zendservice-api, zendframework/zendservice-amazon, zendframework/zendservice-windowsazure, zendframework/zendservice-technorati, zendframework/zendservice-slideshare, zendframework/zendservice-nirvanix, zendframework/zendservice-audioscrobbler, zendframework/zendrest, zendframework/zendopenid, zendframework/zendframework1
Moderate
over 3 years ago
Several Zend Products Vulnerable to XXE and XEE attacks
packagist
zendframework/zendservice-api, zendframework/zendservice-amazon, zendframework/zendservice-windowsazure, zendframework/zendservice-technorati, zendframework/zendservice-slideshare, zendframework/zendservice-nirvanix, zendframework/zendservice-audioscrobbler, zendframework/zendrest, zendframework/zendopenid, zendframework/zendframework1