VYPR

apk package

chainguard/php-8.5-xmlwriter-config

pkg:apk/chainguard/php-8.5-xmlwriter-config

Vulnerabilities (2)

  • CVE-2022-4455Dec 13, 2022
    affected < 0fixed 0

    A vulnerability was identified in sproctor php-calendar up to 2.0.13. This impacts an unknown function of the file index.php. Such manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be launched remotely. The name of the patch is a29411

  • CVE-2017-6485MedMar 5, 2017
    affected < 0fixed 0

    A Cross-Site Scripting (XSS) issue was discovered in php-calendar before 2017-03-03. The vulnerability exists due to insufficient filtration of user-supplied data (errorMsg) passed to the "php-calendar-master/error.php" URL. An attacker could execute arbitrary HTML and script cod