Release date:
2026-05-13 11:14:28 UTC
Description:
- CVE-2026-6735: HTML-encode proc.request_uri and tighten query_string
entity flags in sapi/fpm/fpm/fpm_status.c to fix XSS in PHP-FPM status
endpoint
Updated packages:
-
php-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:aae1954b8e549c5f79bd5f30391d1e8b95d10cc12ca36c4ea9bd90f70c6b5119
-
php-bcmath-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:cb96612171763a9bbb419b8b38dc99c0e429773f2e3f052bd0350b106434d430
-
php-cli-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:e840700cdae92b15c709cb3022ae87784f23d3fe44ddc190d706f6034d78d9c9
-
php-common-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:7a7fce0636ced519568d310686571076b03e88e8acb573eaef6ac44a8ef0863e
-
php-dba-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:ba96ed3374ff7da2d58e299be3ee1f2e9e68ba5f4f2c0042198580fe3676b7b9
-
php-dbg-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:e334a14a45fbb52fb342302a1c7fd8194612d95e5c07933cc80239c331f08f7b
-
php-devel-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:33cc1eb3e6e84ef8117ae48e23fc1d32deac2f3ab380e14178e775e118551146
-
php-embedded-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:9c736c1341cb20dfc70947a71e3f53a27dc6d5406b78592858198fbe698a1746
-
php-enchant-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:981b60ae48131030a8123700a1d379b101a60e1e3efa54e0f5d6eab36a0ce09b
-
php-fpm-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:d5cdff6f92a0e821e3d2d0f24060e193aa1c12b3a34f638ce233c05686865881
-
php-gd-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:8deaa079ecd6637a701a04cd0864f4c36c81680fa347f18d442b826ae1b3e7c1
-
php-gmp-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:3ed7b6416df74f90a015cf4f5da7aebdc65069ddf41cdf16f2592bf54afaa1f5
-
php-intl-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:32a7f1f195a8659884238fd5f8ce5cb324d8d6ea6926a277909b45abd80bc5a5
-
php-json-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:8aa36f5df3b1ce10364ba99a4463294007d45cc7fb45512c9d5c7bd41909f27a
-
php-ldap-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:ec2555118b8df46ffd1dff3638c601937d9213b3f60fc6a3ac605763c178fba5
-
php-mbstring-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:4f4b08fc04f3af4d5bd7e9fe0dfc06df531c77a792097eb385940cf017282baf
-
php-mysqlnd-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:3443d2603f6ff831eb234534c1a39677e62afb092b051022a1f4dc24253e1754
-
php-odbc-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:977941ff43535d885a2525ebe8abe549cfcf75e0519e3893839374e8c0f68d4d
-
php-opcache-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:ab1f0683fe0dff14a1e96a4fc2b8132570c769b17b3b74e565f95315c4083f74
-
php-pdo-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:1e5206cb25b8511ebe44772f6186dd87a831dcf028e74297eecf2ce580e9c4f8
-
php-pgsql-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:8635de46f5210c2e59878f5056dbde4511dc0f75a9ccadc874f10ec067a61cfd
-
php-process-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:074f5364065452e236e575d4b59a3a5fd92ac0a275c6d4d23ea55a324dc76526
-
php-recode-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:a9dd45cf41ced6a1f6e0328431ee049a71d33944a54e58efa6995697045a6bce
-
php-snmp-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:3cd5ddd30ffd31948d8ba2ab2be4da9134301298cb4a0c3cc948bc7ce66b74b7
-
php-soap-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:ef98d4d36c9c6646b276045b4872fc0a36ef906b8e6cf6b7e04458fa1ad483cf
-
php-xml-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:88a0a68aacace75f434524c6a7d8a7282fc77ddedbb1ae0a4818a4eb62359d10
-
php-xmlrpc-7.2.24-1.module_el8+2401+153a633f.tuxcare.els23.x86_64.rpm
sha:a897b48c04b3f2764a6323af6008deb29b1ba4ae8651991317f559592ff09be7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.