Skip to content

Commit

Permalink
refs #000: Update security-checker.html
Browse files Browse the repository at this point in the history
  • Loading branch information
lussoluca committed Sep 15, 2023
1 parent 0c1f610 commit 1548a40
Showing 1 changed file with 12 additions and 12 deletions.
24 changes: 12 additions & 12 deletions tests/expected_reports/security-checker.html
Original file line number Diff line number Diff line change
Expand Up @@ -4,15 +4,24 @@ <h1>security-checker</h1>
composer/composer (1.10.22)
---------------------------

* CVE-2022-24828: Missing input validation can lead to command execution in composer
https://github.com/composer/composer/security/advisories/GHSA-x7cr-6qr6-2hh6

* CVE-2021-41116: Improper escaping of command arguments on Windows leading to command injection
https://github.com/composer/composer/security/advisories/GHSA-frqg-7g38-6gcf

* CVE-2022-24828: Missing input validation can lead to command execution in composer
https://github.com/composer/composer/security/advisories/GHSA-x7cr-6qr6-2hh6

dompdf/dompdf (0.6.1)
---------------------

* CVE-2022-28368: Remote code injection via remote fonts
https://github.com/advisories/GHSA-x752-qjv4-c4hc

* CVE-2022-41343: Remote file inclusion
https://github.com/advisories/GHSA-6x28-7h8c-chx4

* CVE-2022-0085: Server-Side Request Forgery in dompdf/dompdf
https://github.com/advisories/GHSA-pf6p-25r2-fx45

* CVE-2023-23924: Dompdf vulnerable to URI validation failure on SVG parsing
https://github.com/advisories/GHSA-3cw5-7cxw-v5qg

Expand All @@ -22,15 +31,6 @@ <h1>security-checker</h1>
* CVE-2014-5011: Information Disclosure
https://github.com/dompdf/dompdf/releases/tag/v0.6.2

* CVE-2022-0085: Server-Side Request Forgery in dompdf/dompdf
https://github.com/advisories/GHSA-pf6p-25r2-fx45

* CVE-2022-41343: Remote file inclusion
https://github.com/advisories/GHSA-6x28-7h8c-chx4

* CVE-2022-28368: Remote code injection via remote fonts
https://github.com/advisories/GHSA-x752-qjv4-c4hc

* CVE-2014-5013: Remote Code Execution (complement of CVE-2014-2383)
https://github.com/dompdf/dompdf/releases/tag/v0.6.2

Expand Down

0 comments on commit 1548a40

Please sign in to comment.