[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$frOmJgPIhmLkQ9bHL6d4VUaJjRvv4mlS6uUQlKQfZUWg":3},{"product":4,"cycleMajor":14,"releases":15,"cves":67,"nextMajor":91,"indexable":92},{"id":5,"slug":6,"name":7,"category":8,"vendor":9,"description":10,"logo_url":11,"official_url":9,"synced_at":12,"created_at":13},"26c73c6a-811e-4bd5-95d4-38212db95e60","php","PHP","language",null,"Developers working on web development projects often rely on a general-purpose scripting language that can efficiently handle various tasks, and PHP has been a go-to choice for many since its creation by Rasmus Lerdorf in 1993 and subsequent release in 1995. The PHP Group is now responsible for maintaining the language, ensuring it stays relevant and secure for its users. PHP's popularity stems from its flexibility and the vast community that contributes to its development and support. The language has evolved significantly over the years, with the PHP Group continually working to improve its performance, security, and feature set.\n\nThe end-of-life landscape for PHP is complex, with a total of 18 versions released to date. Out of these, 14 versions have already reached their end-of-life, leaving 4 active versions that continue to receive support and security updates. The latest stable version, 8.5.7, is the current benchmark for developers, offering the most up-to-date features and security patches. However, version 8.2 is set to expire on December 31, 2026, marking an important deadline for developers who still rely on this version. This follows the expiration of version 8.1 on December 31, 2025, highlighting the need for developers to stay vigilant about version updates to avoid potential security risks.\n\nThe security picture for PHP is a critical aspect that developers must consider, with a total of 51 CVEs tracked to date. Out of these, 14 are classified as critical, underscoring the potential risks associated with using outdated or vulnerable versions of the language. Version 8.4 is particularly affected, with 13 reported CVEs, making it essential for developers using this version to take immediate action to upgrade or apply necessary security patches. Given these statistics, it is crucial for developers to prioritize PHP version updates and security audits to protect their applications from potential exploits, ensuring the continued integrity and reliability of their web development projects.","https:\u002F\u002Fcdn.simpleicons.org\u002Fphp","2026-10-07T02:00:12.129+00:00","2026-05-30T16:23:55.974439+00:00","5",[16,26,33,41,48,55,61],{"id":17,"product_id":5,"cycle":18,"release_date":19,"eol":20,"eol_boolean":9,"latest":21,"latest_release_date":22,"lts":23,"support":24,"created_at":25},"d078cbee-7830-47cf-b08a-898c85011221","5.6","2014-08-28","2018-12-31","5.6.40","2019-01-10",false,"2017-01-19","2026-05-30T16:24:59.546709+00:00",{"id":27,"product_id":5,"cycle":28,"release_date":29,"eol":30,"eol_boolean":9,"latest":31,"latest_release_date":30,"lts":23,"support":32,"created_at":25},"1badff5d-d68a-49cc-ad6b-a58168a624aa","5.5","2013-06-20","2016-07-21","5.5.38","2015-07-10",{"id":34,"product_id":5,"cycle":35,"release_date":36,"eol":37,"eol_boolean":9,"latest":38,"latest_release_date":39,"lts":23,"support":40,"created_at":25},"9bf5bdf8-69f3-42cb-aa90-b8c81744fde6","5.4","2012-03-01","2015-09-14","5.4.45","2015-09-03","2014-09-14",{"id":42,"product_id":5,"cycle":43,"release_date":44,"eol":45,"eol_boolean":9,"latest":46,"latest_release_date":45,"lts":23,"support":47,"created_at":25},"b1f7009e-b700-4eb4-add0-0ded53a06a2d","5.3","2009-06-30","2014-08-14","5.3.29","2011-06-30",{"id":49,"product_id":5,"cycle":50,"release_date":51,"eol":52,"eol_boolean":9,"latest":53,"latest_release_date":52,"lts":23,"support":54,"created_at":25},"bd604b9e-9169-42eb-8aba-bc34c36c7b54","5.2","2006-11-02","2011-01-06","5.2.17","2008-11-02",{"id":56,"product_id":5,"cycle":57,"release_date":58,"eol":59,"eol_boolean":9,"latest":60,"latest_release_date":59,"lts":23,"support":59,"created_at":25},"e9730061-3b0a-482b-96da-eb52fceaa5de","5.1","2005-11-24","2006-08-24","5.1.6",{"id":62,"product_id":5,"cycle":63,"release_date":64,"eol":65,"eol_boolean":9,"latest":66,"latest_release_date":65,"lts":23,"support":65,"created_at":25},"6ae8bd51-b680-47c9-8144-9de0844d2b33","5.0","2004-07-13","2005-09-05","5.0.5",[68,76,77,78,79,80,81,82,90],{"cveId":69,"releaseId":27,"cycle":28,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},"CVE-2024-3566","A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.","CRITICAL",9.8,0.06883,"2024-04-10T16:15:16.083+00:00","https:\u002F\u002Fnvd.nist.gov\u002Fvuln\u002Fdetail\u002FCVE-2024-3566",{"cveId":69,"releaseId":62,"cycle":63,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},{"cveId":69,"releaseId":17,"cycle":18,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},{"cveId":69,"releaseId":56,"cycle":57,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},{"cveId":69,"releaseId":34,"cycle":35,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},{"cveId":69,"releaseId":42,"cycle":43,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},{"cveId":69,"releaseId":49,"cycle":50,"description":70,"severity":71,"cvssScore":72,"epssScore":73,"inKev":23,"publishedAt":74,"url":75},{"cveId":83,"releaseId":62,"cycle":63,"description":84,"severity":85,"cvssScore":86,"epssScore":87,"inKev":23,"publishedAt":88,"url":89},"CVE-2006-3011","The error_log function in basic_functions.c in PHP before 4.4.4 and 5.x before 5.1.5 allows local users to bypass safe mode and open_basedir restrictions via a \"php:\u002F\u002F\" or other scheme in the third argument, which disables safe mode.","MEDIUM",4.6,0.01342,"2006-06-26T21:05:00+00:00","https:\u002F\u002Fnvd.nist.gov\u002Fvuln\u002Fdetail\u002FCVE-2006-3011",{"cveId":83,"releaseId":56,"cycle":57,"description":84,"severity":85,"cvssScore":86,"epssScore":87,"inKev":23,"publishedAt":88,"url":89},"7",true]