typo3 pharstreamwrapper CVE-2019-11830 is a vulnerability in TYPO3 Pharstreamwrapper
Published on May 9, 2019

PharMetaDataInterceptor in the PharStreamWrapper (aka phar-stream-wrapper) package 2.x before 2.1.1 and 3.x before 3.1.1 for TYPO3 mishandles Phar stub parsing, which allows attackers to bypass a deserialization protection mechanism.

Vendor Advisory Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2019-11830

Want to know whenever a new CVE is published for TYPO3 Pharstreamwrapper? stack.watch will email you.

 

Exploit Probability

EPSS
2.49%
Percentile
85.13%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.