Security Advisory

CVE-2019-19246

7.5
HIGH

Vulnerability Description

Oniguruma through 6.9.3, as used in PHP 7.3.x and other products, has a heap-based buffer over-read in str_lower_case_match in regexec.c.
Published Date November 25, 2019
Official Source NIST NVD Advisory