Junglewise Threat Intelligence

CVE-2015-8371: Composer allows cache poisoning from other projects built on the same host

CVE-2015-8371 · Severity: low · CVSS 3.1 · Published 2023-09-21

Technologies: composer/composer (Packagist). Vendors: Packagist.

Executive brief

Composer allows cache poisoning from other projects built on the same host

Affected products

  • Packagist composer/composer