{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/php-8.5/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"id":"CVE-2026-17543"},{"id":"CVE-2026-17544"},{"id":"CVE-2026-7260"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["PHP 8.2","PHP 8.3","PHP 8.4","PHP 8.5"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["PHP"],"content_html":"\u003cp\u003eThe PHP development team has released security updates for multiple active branches of the PHP scripting language to address several critical vulnerabilities. The flaws affect PHP versions prior to 8.2.33, 8.3.33, 8.4.24, and 8.5.9. These vulnerabilities, tracked under CVE-2026-17543, CVE-2026-17544, CVE-2026-7260, and CVE-2026-9672, include issues that could allow a remote attacker to perform SQL injection attacks, induce denial-of-service (DoS) conditions, or exploit other unspecified security weaknesses within web applications relying on the vulnerable PHP versions. Organizations running web servers utilizing these PHP versions are advised to upgrade to the latest versions (8.2.33, 8.3.33, 8.4.24, or 8.5.9) immediately to mitigate potential exploitation.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of these vulnerabilities can lead to unauthorized database access and manipulation via SQL injection, or the degradation of service availability through DoS attacks. These flaws represent a significant risk to any environment hosting web applications or services written in PHP, potentially resulting in data exfiltration or service outages.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade all PHP installations to versions 8.2.33, 8.3.33, 8.4.24, or 8.5.9 to remediate CVE-2026-17543, CVE-2026-17544, CVE-2026-7260, and CVE-2026-9672.\u003c/li\u003e\n\u003cli\u003eReview web application logs for suspicious patterns associated with SQL injection attempts (e.g., unexpected union statements, tautology strings, or database command syntax).\u003c/li\u003e\n\u003cli\u003ePrioritize patching for internet-facing applications utilizing affected PHP branches.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-07-31T15:28:32Z","date_published":"2026-07-31T15:28:32Z","id":"https://feed.craftedsignal.io/briefs/2026-07-php-vulnerabilities/","summary":"Multiple vulnerabilities, including CVE-2026-17543, CVE-2026-17544, CVE-2026-7260, and CVE-2026-9672, have been identified in PHP, potentially enabling SQL injection and denial-of-service attacks.","title":"Multiple Vulnerabilities in PHP Language","url":"https://feed.craftedsignal.io/briefs/2026-07-php-vulnerabilities/"}],"language":"en","title":"CraftedSignal Threat Feed - PHP 8.5","version":"https://jsonfeed.org/version/1.1"}