VYPR

Phpthumb

by JamesHeinrich

Source repositories

CVEs (1)

  • CVE-2025-52994MedJul 11, 2025
    risk 0.25cvss 4.9epss 0.01

    gif_outputAsJpeg in phpThumb through 1.7.23 allows phpthumb.gif.php OS Command Injection via a crafted parameter value. This is fixed in 1.7.23-202506081709.