Phpfastcache is a PHP caching library with a narrowly focused product footprint that is embedded across a range of web applications and frameworks. The vendor's observed vulnerability exposure centers on deserialization of untrusted data, improper code generation and injection, and information-handling weaknesses that are characteristic of serialization-heavy caching components. Current severity, exploitation activity, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpfastcache over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-16774CRITICAL In phpfastcache before 5.1.3, there is a possible object injection vulnerability in cookie driver. | Dec 12, 2019 | 9.8 | 30 | NO | NO |
CVE-2021-37704MEDIUM PhpFastCache is a high-performance backend cache system (packagist package phpfastcache/phpfastcache). In versions before 6.1.5, 7.1.2, and 8.0.7 the `phpinfo()` can be exposed if | Aug 12, 2021 | 4.3 | 27 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpfastcache.
Media articles that mention a CVE ID that affects a product developed by Phpfastcache — matched by CVE ID, not by vendor name.