VYPR

Xdebug

by Xdebug

CVEs (1)

  • CVE-2015-10141CriJul 23, 2025
    risk 0.69cvss epss 0.66

    An unauthenticated OS command injection vulnerability exists within Xdebug versions 2.5.5 and earlier, a PHP debugging extension developed by Derick Rethans. When remote debugging is enabled, Xdebug listens on port 9000 and accepts debugger protocol commands without…