GHSA-2p6p-9rc9-62j9
Impact
You are affected if your php.ini configuration has registerargcargv enabled.
Patches
Update to 3.9.14, 4.13.2, or 5.5.2.
Workarounds
If you can't upgrade yet, and registerargcargv is enabled, you can disable it to mitigate the issue.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://github.com/craftcms/cms/security/advisories/GHSA-2p6p-9rc9-62j9, https://nvd.nist.gov/vuln/detail/CVE-2024-56145, https://github.com/craftcms/cms/commit/82e893fb794d30563da296bca31379c0df0079b3, https://github.com/Chocapikk/CVE-2024-56145, https://github.com/craftcms/cms, https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-56145
