Direct Vulnerabilities

Known vulnerabilities in the php7.0 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2025-1220

<7.0.33-0ubuntu0.16.04.16+esm16
  • M
CVE-2025-1735

<7.0.33-0ubuntu0.16.04.16+esm16
  • M
CVE-2025-6491

<7.0.33-0ubuntu0.16.04.16+esm16
  • M
Interpretation Conflict

<7.0.33-0ubuntu0.16.04.16+esm15
  • M
CVE-2025-1734

<7.0.33-0ubuntu0.16.04.16+esm15
  • M
CVE-2025-1736

<7.0.33-0ubuntu0.16.04.16+esm15
  • M
CVE-2025-1861

<7.0.33-0ubuntu0.16.04.16+esm15
  • M
Arbitrary Code Injection

<7.0.33-0ubuntu0.16.04.16+esm14
  • M
Out-of-bounds Write

<7.0.33-0ubuntu0.16.04.16+esm14
  • M
CVE-2024-8929

<7.0.33-0ubuntu0.16.04.16+esm14
  • M
CVE-2024-8932

<7.0.33-0ubuntu0.16.04.16+esm14
  • M
Integer Overflow or Wraparound

<7.0.33-0ubuntu0.16.04.16+esm13
  • M
CVE-2024-8927

<7.0.33-0ubuntu0.16.04.16+esm12
  • M
HTTP Request Smuggling

<7.0.33-0ubuntu0.16.04.16+esm12
  • M
Insufficient Verification of Data Authenticity

<7.0.33-0ubuntu0.16.04.16+esm11
  • M
CVE-2024-2756

<7.0.33-0ubuntu0.16.04.16+esm9
  • M
CVE-2024-3096

<7.0.33-0ubuntu0.16.04.16+esm9
  • M
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.16+esm8
  • M
XML External Entity (XXE) Injection

<7.0.33-0ubuntu0.16.04.16+esm10
  • M
Use of Insufficiently Random Values

<7.0.33-0ubuntu0.16.04.16+esm7
  • M
Allocation of Resources Without Limits or Throttling

<7.0.33-0ubuntu0.16.04.16+esm5
  • M
Resource Exhaustion

<7.0.33-0ubuntu0.16.04.16+esm5
  • M
Use of Password Hash With Insufficient Computational Effort

<7.0.33-0ubuntu0.16.04.16+esm6
  • M
CVE-2022-31631

<7.0.33-0ubuntu0.16.04.16+esm5
  • M
CVE-2022-31629

<7.0.33-0ubuntu0.16.04.16+esm5
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<7.0.33-0ubuntu0.16.04.16+esm5
  • M
Release of Invalid Pointer or Reference

<7.0.33-0ubuntu0.16.04.16+esm4
  • M
Buffer Overflow

<7.0.33-0ubuntu0.16.04.16+esm4
  • L
CVE-2021-21707

<7.0.33-0ubuntu0.16.04.16+esm3
  • H
Out-of-bounds Write

<7.0.33-0ubuntu0.16.04.16+esm2
  • L
Improper Input Validation

<7.0.33-0ubuntu0.16.04.16+esm1
  • L
NULL Pointer Dereference

<7.0.33-0ubuntu0.16.04.16+esm1
  • M
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.16+esm1
  • M
Improper Input Validation

<7.0.33-0ubuntu0.16.04.16+esm1
  • M
Reliance on Cookies without Validation and Integrity Checking

<7.0.33-0ubuntu0.16.04.16
  • L
Use After Free

<7.0.33-0ubuntu0.16.04.16+esm1
  • M
Integer Overflow or Wraparound

<7.0.33-0ubuntu0.16.04.15
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.14
  • M
CVE-2020-7066

<7.0.33-0ubuntu0.16.04.14
  • L
Improper Preservation of Permissions

<7.0.33-0ubuntu0.16.04.14
  • L
NULL Pointer Dereference

<7.0.33-0ubuntu0.16.04.14
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.11
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.11
  • L
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.9
  • L
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.9
  • L
Arbitrary Code Injection

<7.0.33-0ubuntu0.16.04.9
  • L
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.9
  • M
Out-of-bounds Write

<7.0.33-0ubuntu0.16.04.7
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.6
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.6
  • L
Improper Input Validation

*
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.5
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.5
  • L
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.5
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.4
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.4
  • L
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.3
  • M
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.3
  • M
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.3
  • L
Access Restriction Bypass

<7.0.33-0ubuntu0.16.04.3
  • M
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.3
  • M
Out-of-Bounds

<7.0.33-0ubuntu0.16.04.3
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.2
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.2
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.2
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.2
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.2
  • L
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.1
  • M
NULL Pointer Dereference

<7.0.33-0ubuntu0.16.04.1
  • M
Arbitrary Argument Injection

<7.0.33-0ubuntu0.16.04.1
  • M
Cross-site Scripting (XSS)

<7.0.32-0ubuntu0.16.04.1
  • M
Out-of-bounds Read

<7.0.32-0ubuntu0.16.04.1
  • L
Out-of-bounds Read

<7.0.32-0ubuntu0.16.04.1
  • M
Integer Overflow or Wraparound

<7.0.33-0ubuntu0.16.04.16+esm3
  • M
Out-of-bounds Read

<7.0.33-0ubuntu0.16.04.16+esm3
  • M
Cross-site Scripting (XSS)

<7.0.30-0ubuntu0.16.04.1
  • M
Out-of-bounds Read

<7.0.30-0ubuntu0.16.04.1
  • M
Information Exposure

<7.0.30-0ubuntu0.16.04.1
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<7.0.30-0ubuntu0.16.04.1
  • M
NULL Pointer Dereference

<7.0.30-0ubuntu0.16.04.1
  • M
Out-of-Bounds

<7.0.28-0ubuntu0.16.04.1
  • L
Resource Exhaustion

<7.0.33-0ubuntu0.16.04.16+esm3
  • M
Cross-site Scripting (XSS)

<7.0.28-0ubuntu0.16.04.1
  • L
Out-of-bounds Read

<7.0.25-0ubuntu0.16.04.1
  • L
Use After Free

<7.0.25-0ubuntu0.16.04.1
  • M
Out-of-Bounds

<7.0.22-0ubuntu0.16.04.1
  • L
Out-of-Bounds

<7.0.22-0ubuntu0.16.04.1
  • M
Improper Check for Unusual or Exceptional Conditions

<7.0.22-0ubuntu0.16.04.1
  • M
Information Exposure

<7.0.22-0ubuntu0.16.04.1
  • M
Out-of-bounds Write

<7.0.22-0ubuntu0.16.04.1
  • M
Out-of-bounds Read

<7.0.22-0ubuntu0.16.04.1
  • M
NULL Pointer Dereference

<7.0.22-0ubuntu0.16.04.1
  • M
Out-of-bounds Read

<7.0.22-0ubuntu0.16.04.1
  • M
Out-of-bounds Write

<7.0.22-0ubuntu0.16.04.1
  • L
Resource Exhaustion

<7.0.33-0ubuntu0.16.04.16+esm3
  • L
Improper Input Validation

<7.0.33-0ubuntu0.16.04.16+esm3
  • M
Out-of-bounds Write

<7.0.8-0ubuntu0.16.04.2
  • L
Integer Overflow or Wraparound

<7.0.15-0ubuntu0.16.04.2
  • L
NULL Pointer Dereference

<7.0.15-0ubuntu0.16.04.2
  • L
Numeric Errors

<7.0.15-0ubuntu0.16.04.2
  • L
Out-of-bounds Read

<7.0.15-0ubuntu0.16.04.2
  • M
Out-of-Bounds

<7.0.15-0ubuntu0.16.04.2
  • M
Use After Free

<7.0.15-0ubuntu0.16.04.2
  • M
Integer Overflow or Wraparound

<7.0.15-0ubuntu0.16.04.2
  • M
Out-of-bounds Read

<7.0.15-0ubuntu0.16.04.2
  • L
Use After Free

*
  • L
Use After Free

<7.0.15-0ubuntu0.16.04.2
  • M
Use After Free

<7.0.15-0ubuntu0.16.04.2
  • M
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.3
  • M
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.3
  • L
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.3
  • L
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.3
  • M
Improper Input Validation

<7.0.8-0ubuntu0.16.04.3
  • M
Use After Free

<7.0.8-0ubuntu0.16.04.3
  • M
NULL Pointer Dereference

<7.0.8-0ubuntu0.16.04.3
  • M
Integer Overflow or Wraparound

<7.0.8-0ubuntu0.16.04.3
  • M
Improper Input Validation

<7.0.8-0ubuntu0.16.04.3
  • M
Out-of-bounds Write

<7.0.8-0ubuntu0.16.04.3
  • L
Arbitrary Code Injection

<7.0.8-0ubuntu0.16.04.3
  • L
Deserialization of Untrusted Data

<7.0.8-0ubuntu0.16.04.3
  • M
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.3
  • L
Information Exposure

<7.0.8-0ubuntu0.16.04.3
  • M
NULL Pointer Dereference

<7.0.8-0ubuntu0.16.04.3
  • M
NULL Pointer Dereference

<7.0.8-0ubuntu0.16.04.3
  • L
Out-of-bounds Read

<7.0.8-0ubuntu0.16.04.1
  • L
Use After Free

<7.0.8-0ubuntu0.16.04.1
  • M
Integer Overflow or Wraparound

<7.0.4-7ubuntu2.1
  • M
Integer Overflow or Wraparound

<7.0.8-0ubuntu0.16.04.1
  • M
Double Free

<7.0.8-0ubuntu0.16.04.1
  • M
Double Free

<7.0.8-0ubuntu0.16.04.1
  • M
Double Free

<7.0.4-7ubuntu2.1
  • M
Use After Free

<7.0.8-0ubuntu0.16.04.2
  • M
Use After Free

<7.0.8-0ubuntu0.16.04.2
  • M
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.2
  • M
NULL Pointer Dereference

<7.0.8-0ubuntu0.16.04.2
  • M
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.2
  • M
Out-of-Bounds

<7.0.8-0ubuntu0.16.04.2
  • M
Out-of-bounds Read

<7.0.8-0ubuntu0.16.04.2
  • M
Integer Overflow or Wraparound

<7.0.8-0ubuntu0.16.04.2
  • M
Improper Access Control

<7.0.8-0ubuntu0.16.04.2
  • M
Improper Input Validation

<7.0.4-7ubuntu2.1
  • L
Out-of-Bounds

<7.0.4-7ubuntu2.1
  • L
CVE-2016-4540

<7.0.4-7ubuntu2.1
  • L
Out-of-Bounds

<7.0.4-7ubuntu2.1
  • L
Improper Input Validation

<7.0.4-7ubuntu2.1
  • L
Out-of-Bounds

<7.0.4-7ubuntu2.1
  • L
CVE-2016-4541

<7.0.4-7ubuntu2.1
  • M
Out-of-Bounds

<7.0.4-7ubuntu2.1
  • M
Improper Input Validation

<7.0.4-7ubuntu2.1
  • M
Out-of-Bounds

<7.0.4-7ubuntu2.1
  • M
Improper Input Validation

<7.0.4-7ubuntu2.1
  • M
Numeric Errors

<7.0.4-7ubuntu2.1
  • L
Out-of-Bounds

<7.0.4-7ubuntu2.1