Mnapoli

Bref

4 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.09%
  • Veröffentlicht 22.03.2024 17:15:08
  • Zuletzt bearbeitet 05.12.2025 19:57:36

Bref is an open-source project that helps users go serverless on Amazon Web Services with PHP. When Bref prior to version 2.1.17 is used with the Event-Driven Function runtime and the handler is a `RequestHandlerInterface`, then the Lambda event is c...

Exploit
  • EPSS 0.14%
  • Veröffentlicht 01.02.2024 16:17:14
  • Zuletzt bearbeitet 21.11.2024 08:59:37

Bref enable serverless PHP on AWS Lambda. When Bref is used with the Event-Driven Function runtime and the handler is a `RequestHandlerInterface`, then the Lambda event is converted to a PSR7 object. During the conversion process, if the request is a...

Exploit
  • EPSS 0.19%
  • Veröffentlicht 01.02.2024 16:17:14
  • Zuletzt bearbeitet 21.11.2024 08:59:37

Bref enable serverless PHP on AWS Lambda. When Bref is used in combination with an API Gateway with the v2 format, it does not handle multiple values headers. If PHP generates a response with two headers having the same key but different values only ...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 01.02.2024 16:17:14
  • Zuletzt bearbeitet 21.11.2024 08:59:37

Bref enable serverless PHP on AWS Lambda. When Bref is used with the Event-Driven Function runtime and the handler is a `RequestHandlerInterface`, then the Lambda event is converted to a PSR7 object. During the conversion process, if the request is a...