Package impact

php Packagist / composer/composer

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2021-41116 medium 5.5 5y ago Improper escaping of command arguments on Windows leading to command injection
CVE-2021-29472 medium 5.5 5y ago Composer's missing argument delimiter can lead to code execution via VCS repository URLs or source download URLs on systems with Mercurial