CVE-2026-40261
Published Apr 15, 2026Composer is a dependency manager for PHP. Versions 1.0 through 2.2.26 and 2.3 through 2.9.5 contain a command injection vulnerability in the Perforce::syncCodeBase() method, which…
- evidence mentions
- 8
- Buzz score
- 40.0