Security Advisory

CVE-2016-1000004

9.8
CRITICAL

Vulnerability Description

Insufficient type checks were employed prior to casting input data in SimpleXMLElement_exportNode and simplexml_import_dom. This issue affects HHVM versions prior to 3.9.5, all versions between 3.10.0 and 3.12.3 (inclusive), and all versions between 3.13.0 and 3.14.1 (inclusive).
Published Date February 19, 2020
Official Source NIST NVD Advisory