CVE-2022-31631 Vulnerability: Immediate Patch Required
ID: ac34e9f6-b23a-552c-ae13-dd8222114842
STIX ID: report--ac34e9f6-b23a-552c-ae13-dd8222114842
Feed Name: Cyble Blog
Threat Score
Critical PHP vulnerability CVE-2022-31631: an integer overflow in PDO::quote() for SQLite can cause improper escaping and enable SQL injection; affects PHP 8.0.x (<8.0.27), 8.1.x (<8.1.15) and 8.2.x (<8.2.2) (CVSS 9.1). Users are urged to upgrade to 8.0.27/8.1.15/8.2.2 or later, apply patches, use prepared statements/parameterized queries, validate inputs, and monitor databases; no active exploits reported at publication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
