VendorsPearpearwebany version
Vulnerabilities

Pear Pearweb any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2026-25241
PEAR is Vulnerable to SQL Injection in /get/<package>/<version> Endpoint
Published 2026-02-03 · Analyzed
9.8EPSS 0.004
CVE-2026-25237
PEAR is Vulnerable to PHP Code Execution via preg_replace /e in Bug Update Emails
Published 2026-02-03 · Analyzed
9.8EPSS 0.004
CVE-2026-25236
PEAR is Vulnerable to SQL Injection in Damblan_Karma IN() Query via Literal Substitution
Published 2026-02-03 · Analyzed
9.8EPSS 0.003
CVE-2026-25238
PEAR is Vulnerable to SQL Injection in Bug Subscription Deletion via Weak Email Validation
Published 2026-02-03 · Analyzed
9.8EPSS 0.003
CVE-2026-25240
PEAR is Vulnerable to SQL Injection in user::maintains() Role IN() Filter
Published 2026-02-03 · Analyzed
9.8EPSS 0.003
CVE-2026-25234
PEAR is Vulnerable to SQL Injection in Category Deletion
Published 2026-02-03 · Analyzed
9.8EPSS 0.003
CVE-2026-25233
PEAR Has a Roadmap Authorization Bypass via Operator Precedence Bug
Published 2026-02-03 · Analyzed
9.1EPSS 0.003
CVE-2026-25235
PEAR Has a Predictable Verification Hash in Election Account Requests
Published 2026-02-03 · Analyzed
8.2EPSS 0.003
CVE-2026-25239
PEAR is Vulnerable to SQL Injection in apidoc_queue Insert via Unescaped Filename
Published 2026-02-03 · Analyzed
8.2EPSS 0.002