CVE-2024-48514

Published Oct 24, 2024

Last updated 23 days ago

Overview

Description
php-heic-to-jpg <= 1.0.5 is vulnerable to remote code execution. An attacker who can upload heic images is able to execute code on the remote server via the file name. As a result, the CIA is no longer guaranteed. This affects php-heic-to-jpg 1.0.5 and below.
Source
cve@mitre.org
NVD status
Awaiting Analysis

Social media

Hype score
Not currently trending