Packagist Package Vulnerabilities
All 948 PHP / Composer packages with known CVEs, ranked by live CVE volume — 6,292 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 151.opensource-workshop/connect-cms6 CVEs
- 152.paymenter/paymenter6 CVEs
- 153.pear/archive_tar6 CVEs
- 154.phpMyFAQ/phpMyFAQ6 CVEs
- 155.privatebin/privatebin6 CVEs
- 156.silverstripe/assets6 CVEs
- 157.symfony/ux-live-component6 CVEs
- 158.typo3/cms-install6 CVEs
- 159.typo3/html-sanitizer6 CVEs
- 160.verbb/formie6 CVEs
- 161.yourls/yourls6 CVEs
- 162.zoujingli/thinkadmin6 CVEs
- 163.adodb/adodb-php5 CVEs
- 164.anchorcms/anchor-cms5 CVEs
- 165.auth0/auth0-php5 CVEs
- 166.automad/automad5 CVEs
- 167.azuracast/azuracast5 CVEs
- 168.bottelet/flarepoint5 CVEs
- 169.cachethq/cachet5 CVEs
- 170.elgg/elgg5 CVEs
- 171.flightphp/core5 CVEs
- 172.getformwork/formwork5 CVEs
- 173.gugoan/economizzer5 CVEs
- 174.juzaweb/cms5 CVEs
- 175.mautic/core-lib5 CVEs
- 176.mineadmin/mineadmin5 CVEs
- 177.phpservermon/phpservermon5 CVEs
- 178.processwire/processwire5 CVEs
- 179.shopper/framework5 CVEs
- 180.shopware/storefront5 CVEs
- 181.symfony/html-sanitizer5 CVEs
- 182.symfony/security-bundle5 CVEs
- 183.symfony/security-core5 CVEs
- 184.symfony/yaml5 CVEs
- 185.tcg/voyager5 CVEs
- 186.thinkcmf/thinkcmf5 CVEs
- 187.tpwd/ke_search5 CVEs
- 188.woocommerce/woocommerce5 CVEs
- 189.appwrite/server-ce4 CVEs
- 190.aws/aws-sdk-php4 CVEs
- 191.bref/bref4 CVEs
- 192.bytefury/crater4 CVEs
- 193.ckeditor/ckeditor4 CVEs
- 194.codeigniter4/shield4 CVEs
- 195.cotonti/cotonti4 CVEs
- 196.dcat/laravel-admin4 CVEs
- 197.drupal/ai4 CVEs
- 198.elmsln/haxcms4 CVEs
- 199.enshrined/svg-sanitize4 CVEs
- 200.evolutioncms/evolution4 CVEs
Which Packagist packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →