First published: Wed Oct 30 2024(Updated: )
A deserialization vulnerability in the component \controller\Index.php of Thinkphp v6.1.3 to v8.0.4 allows attackers to execute arbitrary code.
Affected Software | Affected Version | How to fix |
---|---|---|
composer/topthink/thinkphp | >=6.1.3<=8.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of GHSA-pjhx-j53p-c5f5 is critical due to the potential for arbitrary code execution.
GHSA-pjhx-j53p-c5f5 affects Thinkphp versions from 6.1.3 to 8.0.4.
To fix GHSA-pjhx-j53p-c5f5, you should upgrade Thinkphp to a version higher than 8.0.4.
GHSA-pjhx-j53p-c5f5 is a deserialization vulnerability.
Yes, GHSA-pjhx-j53p-c5f5 can be exploited remotely, allowing attackers to execute arbitrary code.