Suphp is a niche Apache module that executes PHP scripts with the permissions of their owning user, addressing privilege isolation in shared-hosting environments where multiple users run code on the same server. The vulnerability footprint centers on the core Suphp product and reflects authentication and access-control challenges inherent to user-impersonation mechanisms. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Suphp over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-1867HIGH suPHP before 0.7.2 source-highlighting feature allows security bypass which could lead to arbitrary code execution | Dec 13, 2019 | 7.8 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Suphp.
Media articles that mention a CVE ID that affects a product developed by Suphp — matched by CVE ID, not by vendor name.