In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade phpseclib/phpseclib to version 1.0.28, 2.0.53, 3.0.51 or higher.
phpseclib/phpseclib is a PHP Secure Communications Library - Pure-PHP implementations of RSA, AES, SSH2, SFTP, X.509 etc.
Affected versions of this package are vulnerable to Timing Attack via the get_binary_packet function. An attacker can potentially infer sensitive information about the HMAC value by measuring response times during SSH packet processing.