Security Advisory

CVE-2018-11756

9.8
CRITICAL

Vulnerability Description

In PHP Runtime for Apache OpenWhisk, a Docker action inheriting one of the Docker tags openwhisk/action-php-v7.2:1.0.0 or openwhisk/action-php-v7.1:1.0.1 (or earlier) may allow an attacker to replace the user function inside the container if the user code is vulnerable to code exploitation.
Published Date July 23, 2018
Official Source NIST NVD Advisory