Vulnerabilities
Vulnerable Software
Swoole:  >> Swoole  Security Vulnerabilities
A HTTP response header injection vulnerability in Swoole v4.5.2 allows attackers to execute arbitrary code via supplying a crafted URL.
CVSS Score
6.5
EPSS Score
0.006
Published
2023-07-20
Swoole before 4.2.13 allows directory traversal in swPort_http_static_handler.
CVSS Score
5.3
EPSS Score
0.002
Published
2019-08-23
The unpack implementation in Swoole version 4.0.4 lacks correct size checks in the deserialization process. An attacker can craft a serialized object to exploit this vulnerability and cause a SEGV.
CVSS Score
7.5
EPSS Score
0.02
Published
2018-08-18


Contact Us

Shodan ® - All rights reserved