First published: Tue Apr 05 2022(Updated: )
PHP-Memcached v2.2.0 and below contains an improper NULL termination which allows attackers to execute CLRF injection.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php Memcached | <=2.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-26635.
The severity level of CVE-2022-26635 is critical (9.8).
Versions 2.2.0 and below of PHP-Memcached are affected by CVE-2022-26635.
CVE-2022-26635 allows attackers to execute CLRF injection.
At the moment, there is no available fix for CVE-2022-26635. It is recommended to update to a version of PHP-Memcached that is not affected.