Vulnerabilities > Locutus > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-09-01 CVE-2020-7719 Unspecified vulnerability in Locutus
Versions of package locutus before 2.0.12 are vulnerable to prototype Pollution via the php.strings.parse_str function.
network
low complexity
locutus
critical
9.8
2020-07-01 CVE-2020-13619 OS Command Injection vulnerability in Locutus PHP
php/exec/escapeshellarg in Locutus PHP through 2.0.11 allows an attacker to achieve code execution.
network
low complexity
locutus CWE-78
critical
9.8