The Php Curl Class Project maintains a lightweight PHP wrapper library for HTTP client operations, serving as a convenience abstraction around the underlying curl extension. The observed vulnerability signal centers on improper input neutralization during output rendering, manifesting as cross-site scripting exposure in applications that consume user-controlled data through the library's interface. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Php Curl Class Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-30134MEDIUM php-mod/curl (a wrapper of the PHP cURL extension) before 2.3.2 allows XSS via the post_file_path_upload.php key parameter and the POST data to post_multidimensional.php. | Dec 26, 2022 | 6.1 | 31 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Php Curl Class Project.
Media articles that mention a CVE ID that affects a product developed by Php Curl Class Project — matched by CVE ID, not by vendor name.