Security Advisories

IAC-2025-0062025-07–14Possible SQL injection via pgsql extension

Severity: Medium
Affected versions: 24.0.0 – 24.0.8
Fixed version: 24.0.9
Related CVEs: CVE-2025-1735, GHSA-hrwm-9436-5mv3
Missing error checking could result in SQL injection and missing error handling could lead to crashes due to null pointer dereferences.

Further Information
https://github.com/php/php-src/security/advisories/GHSA-hrwm-9436-5mv3

Privacy settings

We use cookies to provide social media features and to analyze traffic to our website. More information

Accept all
Save & close