CVE-2025-1218 | PHP up to 8.2.33/8.3.34/8.4.25/8.5.10 mysqlnd wire protocol parser out-of-bounds

SecurityVulns

A vulnerability was found in PHP up to 8.2.33/8.3.34/8.4.25/8.5.10. It has been declared as critical. The impacted element is an unknown function of the component mysqlnd wire protocol parser. The manipulation results in out-of-bounds read.

This vulnerability is reported as CVE-2025-1218. The attack can be launched remotely. No exploit exists.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More