CVE-2024-34515
EUVD-2024-146305.05.2024, 21:15
image-optimizer before 1.7.3 allows PHAR deserialization, e.g., the phar:// protocol in arguments to file_exists().Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| spatie | image_optimizer | 𝑥 ≤ 1.7.3 | ADP |
Common Weakness Enumeration
References