The Hardened PHP Project maintains a specialized security-hardened PHP runtime implementation and associated modules such as Suhosin, serving developers seeking additional memory and input-protection capabilities beyond standard PHP distributions. The vendor's disclosures reflect a narrow, niche focus rather than a broad product landscape; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hardened Php Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-0807MEDIUM Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature in the Suhosin extension before 0.9.33 for PHP, when suhosin. | Jan 27, 2012 | 5.1 | 20 | NO | NO |
CVE-2007-3205MEDIUM The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, when called without a second parameter, might allow remote attackers to overwrite arbitrary variables by speci | Jun 13, 2007 | 5.0 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hardened Php Project.
Media articles that mention a CVE ID that affects a product developed by Hardened Php Project — matched by CVE ID, not by vendor name.