VYPR
Moderate severityNVD Advisory· Published Dec 27, 2014· Updated Jun 17, 2026

CVE-2013-6919

CVE-2013-6919

Description

The default configuration of phpThumb before 1.7.12 has a false value for the disable_debug option, which allows remote attackers to conduct Server-Side Request Forgery (SSRF) attacks via the src parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
james-heinrich/phpthumbPackagist
< 1.7.121.7.12

Affected products

2

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.