logo
Header graphic 4 of 9

Categories

Archives

Other stuff

Other sites

I wish this site were powered by Django

November 07th, 2006

PHP has a UTF-8-related security vulnerability in htmlspecialchars() and htmlentities()

Filed under: PHP, Technology — jm @ 03:19

Fucking beautiful :-/. All versions <=4.4.0 and 5.2.0 are vulnerable.

Advisory: PHP HTML Entity Encoder Heap Overflow Vulnerability

Comments are closed.