Command injection flaw in PHP Composer allowed supplySecurity Affairs·Apr 29, 21:28 UTC · Apr 29, 2021VulnerabilityCVE-2021-29472160
Researchers Report Supply Chain Vulnerability in Packagist PHP RepositoryThe Hacker News·Oct 6, 04:56 UTC · Oct 6, 2022VulnerabilityCVE-2022-24828CVE-2021-2947247
Flaw in the Packagist PHP repository could have allowed a supply chain attackSecurity Affairs·Oct 4, 20:19 UTC · Oct 4, 2022Exploit / PoC in the wildCVE-2022-24828CVE-2021-2947260
A New PHP Composer Bug Could Enable Widespread SupplyThe Hacker News·Apr 29, 15:27 UTC · Apr 29, 2021VulnerabilityCVE-2021-2947260