-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| verbb/formie | composer | < 2.1.6 | 2.1.6 |
The analysis focused on functions directly related to rendering user input and processing form values. The patches indicate a shift towards safer rendering practices, primarily through the use of Formie::$plugin->getTemplates()->renderObjectTemplate() and renderString(). Functions that were using potentially vulnerable rendering methods or processing user input in a manner that could be exploited are highlighted.
Ongoing coverage of React2Shell