VORANT. Threat Intelligence Sign in Get the full feed

PHP patches multiple unspecified vulnerabilities

medium vulnerability

ANSSI advises patching PHP 8.2, 8.3, 8.4, and 8.5 branches to fix multiple vulnerabilities of unspecified impact.

France's CERT-FR issued an advisory covering multiple vulnerabilities in PHP affecting versions prior to 8.2.32, 8.3.32, 8.4.23, and 8.5.8. The vendor has not specified the exact nature or impact of the security issues, only that they could allow an attacker to cause an unspecified security problem.

Mentioned in this report

Vulnerabilities CVE-2026-12184CVE-2026-14355

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0843

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free