github.com
https://github.com/PHPSocialNetwork/phpfastcache CVE-2019-16774
MEDIUM
Object injection in cookie driver
Record summary
CVE-2019-16774 has a selected CVSS score of 4.4 (medium).
Description
In phpfastcache before 5.1.3, there is a possible object injection vulnerability in cookie driver.
Description source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
phpfastcacheBrowse PHPSocialNetwork / phpfastcache | CVE List | < 5.1.3 to < 5.1.3 | affected |
phpfastcache/phpfastcacheBrowse Packagist / phpfastcache/phpfastcache | GitHub Advisory | 5.0.0 to < 5.0.13 · Fixed in 5.0.13 | affected |
References
6github.com
https://github.com/PHPSocialNetwork/phpfastcache/commit/c4527205cb7a402b595790c74310791f5b04a1a4 github.com
https://github.com/PHPSocialNetwork/phpfastcache/releases/tag/5.0.13 github.comConfirmation
https://github.com/PHPSocialNetwork/phpfastcache/security/advisories/GHSA-484f-743f-6jx2 github.com
https://github.com/advisories/GHSA-484f-743f-6jx2 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-16774