Composer.lock Audit Report

UUID

4fbf8541-d867-49b7-aba1-5e5de4f404cc

Totals

What it means: Overall counts from your composer.lock.

Why it matters: Baseline to understand total scope of dependencies.

What you should consider: Use filters to focus on issues like version gaps or CVEs.

Packages

Current vs latest version · CVE/MB-R findings

Package Current Latest Issues
2tvenom/cborencode
CBOR encoder for PHP
1.0.2 1.0.2 Clean
adobe-commerce/adobe-ims-metapackage
Adobe IMS Integration
2.2.3 2.2.3 Clean
adobe-commerce/os-extensions-metapackage
Metapackage contains references to extensions bundled with Magento OS
1.0.2 1.0.2 Clean
astock/stock-api-libphp
Adobe Stock API library
1.1.6 1.1.6 Clean
aws/aws-crt-php
AWS Common Runtime for PHP
1.2.7 1.2.7 Clean
aws/aws-sdk-php
AWS SDK for PHP - Use Amazon Web Services in your PHP project
3.356.18 3.356.18 Clean
bacon/bacon-qr-code
BaconQrCode is a QR code generator for PHP.
2.0.8 2.0.8 Clean
braintree/braintree_php
Braintree PHP Client Library
6.21.0 6.21.0 Clean
brick/math
Arbitrary-precision arithmetic library
0.12.3 0.12.3 Clean
brick/varexporter
A powerful alternative to var_export(), which can export closures and objects without __set_state()
0.5.0 0.5.0 Clean
christian-riesen/base32
Base32 encoder/decoder according to RFC 4648
1.6.0 1.6.0 Clean
colinmollenhour/cache-backend-file
The stock Zend_Cache_Backend_File backend has extremely poor performance for cleaning by tags making it become unusable as the number of cached items increases. This backend makes many changes resulting in a huge performance boost, especially for tag cleaning.
1.4.8 1.4.8
No release >24m
colinmollenhour/cache-backend-redis
Zend_Cache backend using Redis with full support for tags.
1.17.1 1.17.1 Clean
colinmollenhour/credis
Credis is a lightweight interface to the Redis key-value store which wraps the phpredis library when available for better performance.
1.17.0 1.17.0 Clean
colinmollenhour/php-redis-session-abstract
A Redis-based session handler with optimistic locking
1.5.5 2.1.2
Version gap
composer/ca-bundle
Lets you find a path to the system CA bundle, and includes a fallback to the Mozilla CA bundle.
1.5.8 1.5.8 Clean
composer/class-map-generator
Utilities to scan PHP code and generate class maps.
1.6.2 1.6.2 Clean
composer/composer
Composer helps you declare, manage and install dependencies of PHP projects. It ensures you have the right stack everywhere.
2.8.11 2.8.11 Clean
composer/metadata-minifier
Small utility library that handles metadata minification and expansion.
1.0.0 1.0.0 Clean
composer/pcre
PCRE wrapping library that offers type-safe preg_* replacements.
3.3.2 3.3.2 Clean
composer/semver
Semver library that offers utilities, version constraint parsing and validation.
3.4.4 3.4.4 Clean
composer/spdx-licenses
SPDX licenses list and validation library.
1.5.9 1.5.9 Clean
composer/xdebug-handler
Restarts a process without Xdebug.
3.0.5 3.0.5 Clean
dasprid/enum
PHP 7.1 enum implementation
1.0.6 1.0.6 Clean
elasticsearch/elasticsearch
PHP Client for Elasticsearch
7.17.3 7.17.3 Clean
endroid/qr-code
Endroid QR Code
4.8.5 4.8.5 Clean
ezimuel/guzzlestreams
Fork of guzzle/streams (abandoned) to be used with elasticsearch-php
4.1.0 4.1.0 Clean
ezimuel/ringphp
Fork of guzzle/RingPHP (abandoned) to be used with elasticsearch-php
1.4.0 1.4.0 Clean
ezyang/htmlpurifier
Standards compliant HTML filter written in PHP
4.18.0 4.18.0 Clean
fastly/magento2
Fastly CDN Module for Magento 2.4.x
1.2.236 1.2.236 Clean
firebase/php-jwt
A simple library to encode and decode JSON Web Tokens (JWT) in PHP. Should conform to the current spec.
6.11.1 6.11.1 Clean
google/recaptcha
Client library for reCAPTCHA, a free service that protects websites from spam and abuse.
1.3.1 1.3.1 Clean
guzzlehttp/guzzle
Guzzle is a PHP HTTP client library
7.10.0 7.10.0 Clean
guzzlehttp/promises
Guzzle promises library
2.3.0 2.3.0 Clean
guzzlehttp/psr7
PSR-7 message implementation that also provides common utility methods
2.8.0 2.8.0 Clean
justinrainbow/json-schema
A library to validate a json schema.
6.5.2 6.5.2 Clean
laminas/laminas-captcha
Generate and validate CAPTCHAs using Figlets, images, ReCaptcha, and more
2.18.0 2.19.0
Version gap
laminas/laminas-code
Extensions to the PHP Reflection API, static code scanning, and code generation
4.16.0 4.17.0
Version gap
laminas/laminas-config
provides a nested object property based user interface for accessing this configuration data within application code
3.10.1 3.10.1
Abandoned
laminas/laminas-crypt
Strong cryptography tools and password hashing
3.12.0 4.0.0
Version gap Abandoned
laminas/laminas-db
Database abstraction layer, SQL abstraction, result set abstraction, and RowDataGateway and TableDataGateway implementations
2.20.0 2.20.0 Clean
laminas/laminas-di
Automated dependency injection for PSR-11 containers
3.15.0 3.15.0 Clean
laminas/laminas-escaper
Securely and safely escape HTML, HTML attributes, JavaScript, CSS, and URLs
2.17.0 2.18.0
Version gap
laminas/laminas-eventmanager
Trigger and listen to events within a PHP application
3.14.0 3.15.0
Version gap
laminas/laminas-feed
provides functionality for creating and consuming RSS and Atom feeds
2.25.0 2.25.0 Clean
laminas/laminas-file
Locate PHP classfiles
2.13.1 2.13.1
Archived Abandoned
laminas/laminas-filter
Programmatically filter and normalize data and files
2.41.0 3.4.0
Version gap
laminas/laminas-http
Provides an easy interface for performing Hyper-Text Transfer Protocol (HTTP) requests
2.22.0 2.22.0 Clean
laminas/laminas-i18n
Provide translations for your application, and filter and validate internationalized values
2.30.0 2.31.0
Version gap
laminas/laminas-json
provides convenience methods for serializing native PHP to JSON and decoding JSON to native PHP
3.7.1 3.7.1
Archived Abandoned
laminas/laminas-loader
Autoloading and plugin loading strategies
2.11.1 2.11.1
Archived Abandoned
laminas/laminas-mail
Provides generalized functionality to compose and send both text and MIME-compliant multipart e-mail messages
2.25.1 2.25.1
No release >24m Abandoned
laminas/laminas-math
Create cryptographically secure pseudo-random numbers, and manage big integers
3.8.1 3.8.1
Archived Abandoned
laminas/laminas-mime
Create and parse MIME messages and parts
2.12.0 2.12.0
No release >24m Archived Abandoned
laminas/laminas-modulemanager
Modular application system for laminas-mvc applications
2.17.0 2.19.0
Version gap
laminas/laminas-mvc
Laminas's event-driven MVC layer, including MVC Applications, Controllers, and Plugins
3.8.0 3.8.0 Clean
laminas/laminas-oauth
2.7.0 2.7.0
Archived Abandoned
laminas/laminas-permissions-acl
Provides a lightweight and flexible access control list (ACL) implementation for privileges management
2.17.0 2.18.0
Version gap
laminas/laminas-recaptcha
OOP wrapper for the ReCaptcha web service
3.8.0 3.8.0 Clean
laminas/laminas-router
Flexible routing system for HTTP and console applications
3.14.0 3.16.0
Version gap
laminas/laminas-server
Create Reflection-based RPC servers
2.18.0 2.18.0 Clean
laminas/laminas-servicemanager
Factory-Driven Dependency Injection Container
3.23.1 4.5.0
Version gap
laminas/laminas-session
Object-oriented interface to PHP sessions and storage
2.24.0 2.26.0
Version gap
laminas/laminas-soap
2.14.0 2.14.0 Clean
laminas/laminas-stdlib
SPL extensions, array utilities, error handlers, and more
3.20.0 3.21.0
Version gap
laminas/laminas-text
Create FIGlets and text-based tables
2.12.1 2.12.1
Archived Abandoned
laminas/laminas-translator
Interfaces for the Translator component of laminas-i18n
1.1.0 1.2.0
Version gap
laminas/laminas-uri
A component that aids in manipulating and validating » Uniform Resource Identifiers (URIs)
2.13.0 2.13.0 Clean
laminas/laminas-validator
Validation classes for a wide range of domains, and the ability to chain validators to create complex validation criteria
2.64.4 3.11.0
Version gap
laminas/laminas-view
Flexible view layer supporting and providing multiple view layers, helpers, and more
2.41.0 3.0.1
Version gap
league/flysystem
File storage abstraction for PHP
2.5.0 3.30.2
Version gap
league/flysystem-aws-s3-v3
AWS S3 filesystem adapter for Flysystem.
2.5.0 3.30.1
Version gap
league/mime-type-detection
Mime-type detection for Flysystem
1.16.0 1.16.0 Clean
magento/adobe-stock-integration
Adobe Stock integration
2.1.7-p2 2.1.7-p2 Clean
magento/composer
Magento composer library helps to instantiate Composer application and run composer commands.
1.10.1 1.10.1 Clean
magento/composer-dependency-version-audit-plugin
Validating packages through a composer plugin
0.1.6 0.1.6 Clean
magento/composer-root-update-plugin
Plugin to look ahead for Magento Open Source or Adobe Commerce project root changes when running composer update for new magento/product or magento/magento-cloud metapackage versions
2.0.5 2.0.5 Clean
magento/framework
N/A
103.0.7-p3 103.0.7-p3 Clean
magento/framework-amqp
N/A
100.4.5 100.4.5 Clean
magento/framework-bulk
N/A
101.0.3 101.0.3 Clean
magento/framework-message-queue
N/A
100.4.7 100.4.7 Clean
magento/inventory-composer-installer
Composer plugin for Magento Multi Source Inventory
1.2.0 1.2.0 Clean
magento/inventory-metapackage
Metapackage with Magento Inventory modules for simple installation
1.2.7-p3 1.2.7-p3 Clean
magento/language-de_de
German (Germany) language
100.4.0 100.4.0 Clean
magento/language-en_us
English (United States) language
100.4.0 100.4.0 Clean
magento/language-es_es
Spanish (Spain) language
100.4.0 100.4.0 Clean
magento/language-fr_fr
French (France) language
100.4.0 100.4.0 Clean
magento/language-nl_nl
Dutch (Netherlands) language
100.4.0 100.4.0 Clean
magento/language-pt_br
Portuguese (Brazil) language
100.4.0 100.4.0 Clean
magento/language-zh_hans_cn
Chinese (China) language
100.4.0 100.4.0 Clean
magento/magento-composer-installer
Composer installer for Magento modules
0.4.0 0.4.0
No release >24m
magento/magento2-base
Magento 2 Base (Community Edition)
2.4.7-p3 2.4.7-p3 Clean
magento/module-admin-adobe-ims
N/A
100.5.3 100.5.3 Clean
magento/module-admin-adobe-ims-two-factor-auth
This module is used to add Admin Adobe Ims and Two Factor Auth dependency.
1.0.2 1.0.2 Clean
magento/module-admin-analytics
N/A
100.4.6 100.4.6 Clean
magento/module-admin-graph-ql-server
Commerce Admin BFF GraphQL Server
1.0.4 1.0.4 Clean
magento/module-admin-notification
N/A
100.4.6-p3 100.4.6-p3 Clean
magento/module-adobe-ims
Magento module responsible for authentication to Adobe services
2.2.2 2.2.2 Clean
magento/module-adobe-ims-api
Implementation of Magento module responsible for authentication to Adobe services
2.2.2 2.2.2 Clean
magento/module-adobe-stock-admin-ui
Magento module responsible for the admin panel UI implementation
1.3.5 1.3.5 Clean
magento/module-adobe-stock-asset
Magento module responsible for the Adobe Stock assets handling implementation on Magento side
1.3.4 1.3.4 Clean
magento/module-adobe-stock-asset-api
Magento module responsible for Adobe Stock assets handling on Magento side
2.0.4 2.0.4 Clean
magento/module-adobe-stock-client
Magento module responsible for interaction with Adobe Stock API implementation
1.3.5 1.3.5 Clean
magento/module-adobe-stock-client-api
Magento module responsible for interaction with Adobe Stock API
2.1.5 2.1.5 Clean
magento/module-adobe-stock-image
Magento module responsible for the images handling implementation
1.3.6 1.3.6 Clean
magento/module-adobe-stock-image-admin-ui
Magento module responsible for the admin panel images UI implementation
1.3.6 1.3.6 Clean
magento/module-adobe-stock-image-api
Magento module responsible for the images handling
1.3.4 1.3.4 Clean
magento/module-advanced-pricing-import-export
N/A
100.4.7 100.4.7 Clean
magento/module-advanced-search
N/A
100.4.5-p3 100.4.5-p3 Clean
magento/module-amqp
N/A
100.4.4 100.4.4 Clean
magento/module-analytics
N/A
100.4.7 100.4.7 Clean
magento/module-application-performance-monitor
Performance Monitor for Application
100.4.0 100.4.0 Clean
magento/module-application-performance-monitor-new-relic
Performance data about Application into New Relic
100.4.0 100.4.0 Clean
magento/module-async-config
N/A
100.4.0 100.4.0 Clean
magento/module-asynchronous-operations
N/A
100.4.7 100.4.7 Clean
magento/module-authorization
Authorization module provides access to Magento ACL functionality.
100.4.7 100.4.7 Clean
magento/module-aws-s3
N/A
100.4.5 100.4.5 Clean
magento/module-aws-s3-page-builder
Aws S3 Page Builder module
1.0.4 1.0.4 Clean
magento/module-backend
N/A
102.0.7-p3 102.0.7-p3 Clean
magento/module-backup
N/A
100.4.7 100.4.7 Clean
magento/module-bundle
N/A
101.0.7 101.0.7 Clean
magento/module-bundle-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-bundle-import-export
N/A
100.4.6 100.4.6 Clean
magento/module-bundle-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-cache-invalidate
N/A
100.4.5 100.4.5 Clean
magento/module-captcha
N/A
100.4.7 100.4.7 Clean
magento/module-cardinal-commerce
Provides a possibility to enable 3-D Secure 2.0 support for payment methods.
100.4.5 100.4.5 Clean
magento/module-catalog
N/A
104.0.7-p2 104.0.7-p2 Clean
magento/module-catalog-analytics
N/A
100.4.4 100.4.4 Clean
magento/module-catalog-cms-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-catalog-customer-graph-ql
N/A
100.4.6 100.4.6 Clean
magento/module-catalog-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-catalog-import-export
N/A
101.1.7-p3 101.1.7-p3 Clean
magento/module-catalog-inventory
N/A
100.4.7 100.4.7 Clean
magento/module-catalog-inventory-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-catalog-page-builder-analytics
Catalog Page Builder Analytics module
1.6.4 1.6.4 Clean
magento/module-catalog-rule
N/A
101.2.7 101.2.7 Clean
magento/module-catalog-rule-configurable
N/A
100.4.6 100.4.6 Clean
magento/module-catalog-rule-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-catalog-rule-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-catalog-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-catalog-search
Catalog search
102.0.7-p3 102.0.7-p3 Clean
magento/module-catalog-url-rewrite
N/A
100.4.7 100.4.7 Clean
magento/module-catalog-url-rewrite-graph-ql
N/A
100.4.5 100.4.5 Clean
magento/module-catalog-widget
N/A
100.4.7 100.4.7 Clean
magento/module-checkout
N/A
100.4.7 100.4.7 Clean
magento/module-checkout-agreements
N/A
100.4.6 100.4.6 Clean
magento/module-checkout-agreements-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-cms
N/A
104.0.7-p3 104.0.7-p3 Clean
magento/module-cms-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-cms-page-builder-analytics
CMS Page Builder Analytics module
1.6.4 1.6.4 Clean
magento/module-cms-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-cms-url-rewrite
N/A
100.4.6 100.4.6 Clean
magento/module-cms-url-rewrite-graph-ql
N/A
100.4.5 100.4.5 Clean
magento/module-compare-list-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-config
N/A
101.2.7-p2 101.2.7-p2 Clean
magento/module-configurable-import-export
N/A
100.4.5 100.4.5 Clean
magento/module-configurable-product
N/A
100.4.7 100.4.7 Clean
magento/module-configurable-product-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-configurable-product-sales
N/A
100.4.4 100.4.4 Clean
magento/module-configurable-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-contact
N/A
100.4.6 100.4.6 Clean
magento/module-contact-graph-ql
N/A
100.4.0 100.4.0 Clean
magento/module-cookie
N/A
100.4.7 100.4.7 Clean
magento/module-cron
N/A
100.4.7 100.4.7 Clean
magento/module-csp
CSP module enables Content Security Policies for Magento
100.4.6 100.4.6 Clean
magento/module-currency-symbol
N/A
100.4.5 100.4.5 Clean
magento/module-customer
N/A
103.0.7-p3 103.0.7-p3 Clean
magento/module-customer-analytics
N/A
100.4.4 100.4.4 Clean
magento/module-customer-downloadable-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-customer-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-customer-import-export
N/A
100.4.7 100.4.7 Clean
magento/module-customer-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-data-exporter
Magento 2 Data Exporter module exports necessary data to Magento cloud services that rely on it
103.4.11 103.4.11 Clean
magento/module-deploy
N/A
100.4.7 100.4.7 Clean
magento/module-developer
N/A
100.4.7 100.4.7 Clean
magento/module-dhl
N/A
100.4.6 100.4.6 Clean
magento/module-directory
N/A
100.4.7 100.4.7 Clean
magento/module-directory-graph-ql
N/A
100.4.5 100.4.5 Clean
magento/module-downloadable
N/A
100.4.7 100.4.7 Clean
magento/module-downloadable-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-downloadable-import-export
N/A
100.4.6 100.4.6 Clean
magento/module-downloadable-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-eav
N/A
102.1.7 102.1.7 Clean
magento/module-eav-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-elasticsearch
N/A
101.0.7 101.0.7 Clean
magento/module-elasticsearch-7
N/A
100.4.7 100.4.7 Clean
magento/module-email
N/A
101.1.7 101.1.7 Clean
magento/module-encryption-key
N/A
100.4.5-p2 100.4.5-p2 Clean
magento/module-fedex
N/A
100.4.5-p2 100.4.5-p2 Clean
magento/module-gift-message
N/A
100.4.6 100.4.6 Clean
magento/module-gift-message-graph-ql
N/A
100.4.5 100.4.5 Clean
magento/module-google-adwords
N/A
100.4.4 100.4.4 Clean
magento/module-google-analytics
N/A
100.4.3 100.4.3 Clean
magento/module-google-gtag
N/A
100.4.2 100.4.2 Clean
magento/module-google-optimizer
N/A
100.4.6 100.4.6 Clean
magento/module-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-graph-ql-cache
N/A
100.4.4 100.4.4 Clean
magento/module-graph-ql-new-relic
N/A
100.4.0 100.4.0 Clean
magento/module-graph-ql-resolver-cache
N/A
100.4.0 100.4.0 Clean
magento/module-graph-ql-server
Commerce BFF GraphQL Server
1.0.3 1.0.3 Clean
magento/module-grouped-catalog-inventory
N/A
100.4.4 100.4.4 Clean
magento/module-grouped-import-export
N/A
100.4.5 100.4.5 Clean
magento/module-grouped-product
N/A
100.4.7 100.4.7 Clean
magento/module-grouped-product-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-grouped-product-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-import-export
N/A
101.0.7-p2 101.0.7-p2 Clean
magento/module-indexer
N/A
100.4.7 100.4.7 Clean
magento/module-instant-purchase
N/A
100.4.6-p3 100.4.6-p3 Clean
magento/module-integration
N/A
100.4.7-p2 100.4.7-p2 Clean
magento/module-integration-graph-ql
N/A
100.4.0 100.4.0 Clean
magento/module-inventory
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-admin-ui
N/A
1.2.5-p2 1.2.5-p2 Clean
magento/module-inventory-advanced-checkout
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-api
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-bundle-import-export
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-bundle-product
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-bundle-product-admin-ui
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-bundle-product-indexer
N/A
1.1.4 1.1.4 Clean
magento/module-inventory-cache
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-catalog
N/A
1.3.2 1.3.2 Clean
magento/module-inventory-catalog-admin-ui
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-catalog-api
N/A
1.3.5 1.3.5 Clean
magento/module-inventory-catalog-frontend-ui
N/A
1.0.4 1.0.4 Clean
magento/module-inventory-catalog-search
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-catalog-search-bundle-product
N/A
1.0.3 1.0.3 Clean
magento/module-inventory-catalog-search-configurable-product
N/A
1.0.3 1.0.3 Clean
magento/module-inventory-configurable-product
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-configurable-product-admin-ui
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-configurable-product-frontend-ui
N/A
1.0.5 1.0.5 Clean
magento/module-inventory-configurable-product-indexer
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-configuration
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-configuration-api
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-distance-based-source-selection
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-distance-based-source-selection-admin-ui
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-distance-based-source-selection-api
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-elasticsearch
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-export-stock
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-export-stock-api
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-graph-ql
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-grouped-product
N/A
1.3.2 1.3.2 Clean
magento/module-inventory-grouped-product-admin-ui
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-grouped-product-indexer
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-import-export
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-in-store-pickup
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-admin-ui
N/A
1.1.4 1.1.4 Clean
magento/module-inventory-in-store-pickup-api
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-frontend
N/A
1.1.5 1.1.5 Clean
magento/module-inventory-in-store-pickup-graph-ql
N/A
1.1.4 1.1.4 Clean
magento/module-inventory-in-store-pickup-multishipping
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-quote
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-quote-graph-ql
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-sales
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-sales-admin-ui
N/A
1.1.5 1.1.5 Clean
magento/module-inventory-in-store-pickup-sales-api
N/A
1.1.3-p1 1.1.3-p1 Clean
magento/module-inventory-in-store-pickup-shipping
N/A
1.1.4 1.1.4 Clean
magento/module-inventory-in-store-pickup-shipping-admin-ui
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-shipping-api
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-in-store-pickup-webapi-extension
N/A
1.1.3 1.1.3 Clean
magento/module-inventory-indexer
N/A
2.2.2 2.2.2 Clean
magento/module-inventory-low-quantity-notification
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-low-quantity-notification-admin-ui
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-low-quantity-notification-api
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-multi-dimensional-indexer-api
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-product-alert
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-quote-graph-ql
N/A
1.0.4 1.0.4 Clean
magento/module-inventory-requisition-list
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-reservation-cli
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-reservations
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-reservations-api
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-sales
N/A
1.3.2 1.3.2 Clean
magento/module-inventory-sales-admin-ui
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-sales-api
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-sales-async-order
N/A
100.2.1 100.2.1 Clean
magento/module-inventory-sales-frontend-ui
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-setup-fixture-generator
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-shipping
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-shipping-admin-ui
N/A
1.2.5 1.2.5 Clean
magento/module-inventory-source-deduction-api
N/A
1.2.4 1.2.4 Clean
magento/module-inventory-source-selection
N/A
1.2.3 1.2.3 Clean
magento/module-inventory-source-selection-api
N/A
1.4.4 1.4.4 Clean
magento/module-inventory-swatches-frontend-ui
N/A
1.0.3 1.0.3 Clean
magento/module-inventory-visual-merchandiser
N/A
1.1.5 1.1.5 Clean
magento/module-inventory-wishlist
N/A
1.0.4 1.0.4 Clean
magento/module-jwt-framework-adapter
JWT Manager implementation based on jwt-framework
100.4.3 100.4.3 Clean
magento/module-jwt-user-token
Introduces JWT token support for web API authentication
100.4.2-p2 100.4.2-p2 Clean
magento/module-layered-navigation
N/A
100.4.7 100.4.7 Clean
magento/module-login-as-customer
Allow for admin to enter a customer account
100.4.7 100.4.7 Clean
magento/module-login-as-customer-admin-ui
100.4.7 100.4.7 Clean
magento/module-login-as-customer-api
Allow for admin to enter a customer account
100.4.6 100.4.6 Clean
magento/module-login-as-customer-assistance
100.4.6 100.4.6 Clean
magento/module-login-as-customer-frontend-ui
100.4.6 100.4.6 Clean
magento/module-login-as-customer-graph-ql
Flexible login as a customer so a merchant or merchant admin can log into an end customer's account to assist them with their account.
100.4.4 100.4.4 Clean
magento/module-login-as-customer-log
100.4.5 100.4.5 Clean
magento/module-login-as-customer-page-cache
100.4.6 100.4.6 Clean
magento/module-login-as-customer-quote
100.4.5 100.4.5 Clean
magento/module-login-as-customer-sales
100.4.6 100.4.6 Clean
magento/module-marketplace
N/A
100.4.5 100.4.5 Clean
magento/module-media-content
Magento module provides the implementation for managing relations between content and media files used in that content
100.4.5 100.4.5 Clean
magento/module-media-content-api
Magento module provides the API interfaces for managing relations between content and media files used in that content
100.4.6 100.4.6 Clean
magento/module-media-content-catalog
Magento module provides the implementation of MediaContent functionality for Magento_Catalog module
100.4.5 100.4.5 Clean
magento/module-media-content-cms
Magento module provides the implementation of MediaContent functionality for Magento_Cms module
100.4.5 100.4.5 Clean
magento/module-media-content-synchronization
Magento module provides implementation of the media content data synchronization.
100.4.6 100.4.6 Clean
magento/module-media-content-synchronization-api
Magento module responsible for the media content synchronization implementation API
100.4.5 100.4.5 Clean
magento/module-media-content-synchronization-catalog
Magento module provides the implementation of MediaContentSynchronization functionality for Magento_Catalog module
100.4.4 100.4.4 Clean
magento/module-media-content-synchronization-cms
Magento module provides the implementation of MediaContentSynchronization functionality for Magento_Cms module
100.4.4 100.4.4 Clean
magento/module-media-gallery
Magento module responsible for media handling
100.4.6 100.4.6 Clean
magento/module-media-gallery-api
Magento module responsible for media gallery asset attributes storage and management
101.0.6 101.0.6 Clean
magento/module-media-gallery-catalog
Magento module responsible for catalog gallery processor delete operation handling
100.4.4 100.4.4 Clean
magento/module-media-gallery-catalog-integration
Magento module responsible for extending catalog image uploader functionality
100.4.4 100.4.4 Clean
magento/module-media-gallery-catalog-ui
Magento module that implement category grid for media gallery.
100.4.4 100.4.4 Clean
magento/module-media-gallery-cms-ui
Cms related UI elements in the magento media gallery
100.4.4 100.4.4 Clean
magento/module-media-gallery-integration
Magento module responsible for integration of enhanced media gallery
100.4.6 100.4.6 Clean
magento/module-media-gallery-metadata
Magento module responsible for images metadata processing
100.4.5 100.4.5 Clean
magento/module-media-gallery-metadata-api
Magento module responsible for media gallery metadata implementation API
100.4.4 100.4.4 Clean
magento/module-media-gallery-renditions
Magento module that implements height and width fields for for media gallery items.
100.4.5 100.4.5 Clean
magento/module-media-gallery-renditions-api
Magento module that is responsible for the API implementation of Media Gallery Renditions.
100.4.4 100.4.4 Clean
magento/module-media-gallery-synchronization
Magento module provides implementation of the media gallery data synchronization.
100.4.6 100.4.6 Clean
magento/module-media-gallery-synchronization-api
Magento module responsible for the media gallery synchronization implementation API
100.4.5 100.4.5 Clean
magento/module-media-gallery-synchronization-metadata
Magento module responsible for images metadata synchronization
100.4.3 100.4.3 Clean
magento/module-media-gallery-ui
Magento module responsible for the media gallery UI implementation
100.4.6 100.4.6 Clean
magento/module-media-gallery-ui-api
Magento module responsible for the media gallery UI implementation API
100.4.5 100.4.5 Clean
magento/module-media-storage
N/A
100.4.6 100.4.6 Clean
magento/module-message-queue
N/A
100.4.7 100.4.7 Clean
magento/module-msrp
N/A
100.4.6 100.4.6 Clean
magento/module-msrp-configurable-product
N/A
100.4.4 100.4.4 Clean
magento/module-msrp-grouped-product
N/A
100.4.4 100.4.4 Clean
magento/module-msrp-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-multishipping
N/A
100.4.7 100.4.7 Clean
magento/module-mysql-mq
N/A
100.4.5 100.4.5 Clean
magento/module-new-relic-reporting
N/A
100.4.5 100.4.5 Clean
magento/module-newsletter
N/A
100.4.7-p2 100.4.7-p2 Clean
magento/module-newsletter-graph-ql
Provides GraphQl functionality for the newsletter subscriptions.
100.4.4 100.4.4 Clean
magento/module-offline-payments
N/A
100.4.5 100.4.5 Clean
magento/module-offline-shipping
N/A
100.4.6 100.4.6 Clean
magento/module-offline-shipping-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-open-search
N/A
100.4.1 100.4.1 Clean
magento/module-order-cancellation
N/A
100.4.0 100.4.0 Clean
magento/module-order-cancellation-graph-ql
N/A
100.4.0 100.4.0 Clean
magento/module-order-cancellation-ui
Magento module that implements order cancellation UI.
100.4.0 100.4.0 Clean
magento/module-page-builder
Page Builder module
2.2.5-p3 2.2.5-p3 Clean
magento/module-page-builder-admin-analytics
Page Builder Admin Analytics module
1.1.4 1.1.4 Clean
magento/module-page-builder-analytics
Page Builder Analytics module
1.6.4 1.6.4 Clean
magento/module-page-cache
N/A
100.4.7 100.4.7 Clean
magento/module-payment
N/A
100.4.7 100.4.7 Clean
magento/module-payment-graph-ql
N/A
100.4.2 100.4.2 Clean
magento/module-payment-services-base
Payment Services Base module
2.12.0 2.12.0 Clean
magento/module-payment-services-dashboard
Payment Services Dashboard module
2.12.0 2.12.0 Clean
magento/module-payment-services-paypal
Payment Services PayPal module
2.12.0 2.12.0 Clean
magento/module-payment-services-paypal-graph-ql
Payment Services PayPal GraphQL module
2.12.0 2.12.0 Clean
magento/module-payment-services-saas-export
Magento 2 Payment Services SaaS Export module exports necessary Payment Services data to Magento cloud services that rely on it
2.12.0 2.12.0 Clean
magento/module-paypal
N/A
101.0.7-p3 101.0.7-p3 Clean
magento/module-paypal-captcha
Provides CAPTCHA validation for PayPal Payflow Pro
100.4.4 100.4.4 Clean
magento/module-paypal-graph-ql
GraphQl support for Paypal
100.4.5 100.4.5 Clean
magento/module-persistent
N/A
100.4.7 100.4.7 Clean
magento/module-product-alert
N/A
100.4.6 100.4.6 Clean
magento/module-product-links-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-product-video
Add Video to Products
100.4.7 100.4.7 Clean
magento/module-query-xml
Query Xml
103.4.11 103.4.11 Clean
magento/module-quote
N/A
101.2.7-p1 101.2.7-p1 Clean
magento/module-quote-analytics
N/A
100.4.6 100.4.6 Clean
magento/module-quote-bundle-options
Magento module provides data provider for creating buy request for bundle products
100.4.3 100.4.3 Clean
magento/module-quote-configurable-options
Magento module provides data provider for creating buy request for configurable products
100.4.3 100.4.3 Clean
magento/module-quote-downloadable-links
Magento module provides data provider for creating buy request for links of downloadable products
100.4.3 100.4.3 Clean
magento/module-quote-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-re-captcha-admin-ui
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-checkout
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-checkout-sales-rule
Google ReCaptcha integration for Magento2 coupons
1.1.3 1.1.3 Clean
magento/module-re-captcha-contact
Google reCAPTCHA integration for Magento2
1.1.3 1.1.3 Clean
magento/module-re-captcha-customer
Google reCAPTCHA integration for Magento2
1.1.5 1.1.5 Clean
magento/module-re-captcha-frontend-ui
Google reCAPTCHA integration for Magento2
1.1.5 1.1.5 Clean
magento/module-re-captcha-migration
Google reCAPTCHA config migration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-newsletter
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-paypal
Google reCaptcha integration for Magento2 PayPal PayflowPro payment form
1.1.4 1.1.4 Clean
magento/module-re-captcha-review
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-send-friend
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-store-pickup
Google reCaptcha integration for Magento2 Inventory Store Pickup shipping form
1.0.3 1.0.3 Clean
magento/module-re-captcha-ui
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-user
Google reCAPTCHA integration for Magento2
1.1.4 1.1.4 Clean
magento/module-re-captcha-validation
Google reCAPTCHA integration for Magento2
1.1.3 1.1.3 Clean
magento/module-re-captcha-validation-api
Google reCAPTCHA integration for Magento2
1.1.3 1.1.3 Clean
magento/module-re-captcha-version-2-checkbox
Google reCAPTCHA integration for Magento2
2.0.4 2.0.4 Clean
magento/module-re-captcha-version-2-invisible
Google reCAPTCHA integration for Magento2
2.0.4 2.0.4 Clean
magento/module-re-captcha-version-3-invisible
Google reCAPTCHA integration for Magento2
2.0.4 2.0.4 Clean
magento/module-re-captcha-webapi-api
Google reCAPTCHA integration for Magento2
1.0.3 1.0.3 Clean
magento/module-re-captcha-webapi-graph-ql
Google reCAPTCHA integration for Magento2
1.0.3 1.0.3 Clean
magento/module-re-captcha-webapi-rest
Google reCAPTCHA integration for Magento2
1.0.3 1.0.3 Clean
magento/module-re-captcha-webapi-ui
Google reCAPTCHA integration for Magento2
1.0.3 1.0.3 Clean
magento/module-related-product-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-release-notification
N/A
100.4.5 100.4.5 Clean
magento/module-remote-storage
N/A
100.4.5 100.4.5 Clean
magento/module-reports
N/A
100.4.7-p3 100.4.7-p3 Clean
magento/module-require-js
N/A
100.4.3 100.4.3 Clean
magento/module-review
N/A
100.4.7 100.4.7 Clean
magento/module-review-analytics
N/A
100.4.4 100.4.4 Clean
magento/module-review-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-review-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-robots
N/A
101.1.3 101.1.3 Clean
magento/module-rss
N/A
100.4.5 100.4.5 Clean
magento/module-rule
N/A
100.4.6 100.4.6 Clean
magento/module-saas-common
Magento 2 SaaS Common module for shared saas export functionality
103.4.11 103.4.11 Clean
magento/module-sales
N/A
103.0.7-p3 103.0.7-p3 Clean
magento/module-sales-analytics
N/A
100.4.4 100.4.4 Clean
magento/module-sales-data-exporter
Sales data exporter
2.12.0 2.12.0 Clean
magento/module-sales-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-sales-inventory
N/A
100.4.4 100.4.4 Clean
magento/module-sales-rule
N/A
101.2.7-p3 101.2.7-p3 Clean
magento/module-sales-rule-graph-ql
N/A
100.4.0 100.4.0 Clean
magento/module-sales-rule-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-sales-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-sales-sequence
N/A
100.4.4 100.4.4 Clean
magento/module-sample-data
Sample Data fixtures
100.4.5 100.4.5 Clean
magento/module-search
N/A
101.1.7-p3 101.1.7-p3 Clean
magento/module-security
Security management module
100.4.7 100.4.7 Clean
magento/module-securitytxt
Security.txt file for Magento 2 websites
1.1.3 1.1.3 Clean
magento/module-send-friend
N/A
100.4.5 100.4.5 Clean
magento/module-send-friend-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-service-proxy
Service Proxy module
2.12.0 2.12.0 Clean
magento/module-services-id
Commerce Services identity
3.3.1 3.3.1 Clean
magento/module-services-id-graph-ql-server
Commerce Services identity GraphQL server
1.1.8 1.1.8 Clean
magento/module-services-id-layout
Commerce Services identity Layout
1.1.6 1.1.6 Clean
magento/module-shipping
N/A
100.4.7-p2 100.4.7-p2 Clean
magento/module-sitemap
N/A
100.4.6 100.4.6 Clean
magento/module-store
N/A
101.1.7 101.1.7 Clean
magento/module-store-data-exporter
Store data exporter
2.12.0 2.12.0 Clean
magento/module-store-graph-ql
N/A
100.4.5 100.4.5 Clean
magento/module-swagger
N/A
100.4.6 100.4.6 Clean
magento/module-swagger-webapi
N/A
100.4.3 100.4.3 Clean
magento/module-swagger-webapi-async
N/A
100.4.3 100.4.3 Clean
magento/module-swatches
Add Swatches to Products
100.4.7 100.4.7 Clean
magento/module-swatches-graph-ql
N/A
100.4.5 100.4.5 Clean
magento/module-swatches-layered-navigation
N/A
100.4.3 100.4.3 Clean
magento/module-swatches-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-tax
N/A
100.4.7 100.4.7 Clean
magento/module-tax-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-tax-import-export
N/A
100.4.6-p2 100.4.6-p2 Clean
magento/module-tax-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-theme
N/A
101.1.7 101.1.7 Clean
magento/module-theme-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-theme-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-translation
N/A
100.4.7 100.4.7 Clean
magento/module-two-factor-auth
Two Factor Authentication module for Magento2
1.1.6-p3 1.1.6-p3 Clean
magento/module-ui
N/A
101.2.7-p3 101.2.7-p3 Clean
magento/module-ups
N/A
100.4.7-p1 100.4.7-p1 Clean
magento/module-url-rewrite
N/A
102.0.6 102.0.6 Clean
magento/module-url-rewrite-graph-ql
N/A
100.4.6 100.4.6 Clean
magento/module-user
N/A
101.2.7 101.2.7 Clean
magento/module-usps
N/A
100.4.6-p3 100.4.6-p3 Clean
magento/module-variable
N/A
100.4.5 100.4.5 Clean
magento/module-vault
101.2.7 101.2.7 Clean
magento/module-vault-graph-ql
N/A
100.4.3 100.4.3 Clean
magento/module-version
N/A
100.4.4 100.4.4 Clean
magento/module-webapi
N/A
100.4.6-p1 100.4.6-p1 Clean
magento/module-webapi-async
N/A
100.4.5 100.4.5 Clean
magento/module-webapi-security
WebapiSecurity module provides option to loosen security on some webapi resources.
100.4.4 100.4.4 Clean
magento/module-weee
N/A
100.4.7 100.4.7 Clean
magento/module-weee-graph-ql
N/A
100.4.4 100.4.4 Clean
magento/module-widget
N/A
101.2.7 101.2.7 Clean
magento/module-widget-sample-data
N/A
100.4.4 100.4.4 Clean
magento/module-wishlist
N/A
101.2.7-p3 101.2.7-p3 Clean
magento/module-wishlist-analytics
N/A
100.4.5 100.4.5 Clean
magento/module-wishlist-graph-ql
N/A
100.4.7 100.4.7 Clean
magento/module-wishlist-sample-data
N/A
100.4.4 100.4.4 Clean
magento/page-builder
Page Builder metapackage
1.7.4-p3 1.7.4-p3 Clean
magento/payment-services
Payment Services metapackage
2.12.0 2.12.0 Clean
magento/product-community-edition
eCommerce Platform for Growth (Community Edition)
2.4.7-p3 2.4.8-p3
CVE-2025-24411
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24408
Magento Information Exposure vulnerability
Published: 2025-02-11
CVE-2025-24437
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24424
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24429
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24425
Magento Business Logic Error vulnerability
Published: 2025-02-11
CVE-2025-24430
Magento Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability
Published: 2025-02-11
CVE-2025-24432
Magento Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability
Published: 2025-02-11
CVE-2025-24435
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24438
Magento stored Cross-Site Scripting (XSS) vulnerability
Published: 2025-02-11
CVE-2025-24406
Adobe Commerce Path Traversal
Published: 2025-02-11
CVE-2025-24414
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-24434
Improper Authorization vulnerability in Magento and Adobe Commerce
Published: 2025-02-11
CVE-2025-24417
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-24415
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-24436
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24410
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-24412
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-24428
Magento stored Cross-Site Scripting (XSS) vulnerability
Published: 2025-02-11
CVE-2025-24416
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-24427
Magento Improper Access Control vulnerability
Published: 2025-02-11
CVE-2025-24421
Magento Incorrect Authorization vulnerability
Published: 2025-02-11
CVE-2025-24409
Adobe Commerce Improper Authorization vulnerability
Published: 2025-02-11
CVE-2025-24413
Magento Stored Cross-Site Scripting (XSS) Vulnerability
Published: 2025-02-11
CVE-2025-27192
Magento does not properly protect credentials
Published: 2025-04-08
CVE-2025-27190
Magento Improper Access Control leads to Security feature bypass
Published: 2025-04-08
CVE-2025-27188
Magento Improper Authorization vulnerability
Published: 2025-04-08
CVE-2025-27191
Magento Improper Access Control leads to Security feature bypass
Published: 2025-04-08
CVE-2025-27206
Magento Improper Access Control leads to security feature bypass
Published: 2025-06-10
CVE-2025-47110
Magneto contains stored XSS vulnerability
Published: 2025-06-10
CVE-2025-43585
Magento Improper Authorization leading to security feature bypass
Published: 2025-06-10
CVE-2025-49549
Magento Authenticated Security feature bypass
Published: 2025-06-26
CVE-2025-49550
Magento Security feature bypass
Published: 2025-06-26
CVE-2025-49555
Magento Cross-Site Request Forgery (CSRF) vulnerability
Published: 2025-08-12
CVE-2025-49556
Magento has incorrect authorization issue that leads to arbitrary file system read
Published: 2025-08-12
CVE-2025-49557
Magento Cross-site Scripting vulnerability
Published: 2025-08-12
CVE-2025-49559
Magento vulnerable to path traversal
Published: 2025-08-12
CVE-2025-49558
Magento Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability
Published: 2025-08-12
CVE-2025-49554
Magento vulnerable to denial of service
Published: 2025-08-12
CVE-2025-54236
Magento Community Edition Improper Input Validation vulnerability
Published: 2025-09-09
CVE-2025-54264
Magento vulnerable to stored Cross-Site Scripting (XSS)
Published: 2025-10-14
CVE-2025-54263
Magento provides incorrect authorization through a security feature bypass
Published: 2025-10-14
CVE-2025-54266
Magento vulnerable to stored Cross-Site Scripting (XSS)
Published: 2025-10-14
CVE-2025-54267
Magento vulnerable to privilege escalation due to incorrect authorization
Published: 2025-10-14
CVE-2025-54265
Magento allows incorrect authorization
Published: 2025-10-14
Version gap
magento/sample-data-media
Sample Data media files
100.4.0 100.4.0 Clean
magento/security-package
Magento Security Package
1.1.6-p3 1.1.6-p3 Clean
magento/services-connector
Saas utilities module
1.3.6 1.3.6 Clean
magento/services-id
Commerce Services identity metapackage
3.3.1 3.3.1 Clean
magento/theme-adminhtml-backend
N/A
100.4.7-p3 100.4.7-p3 Clean
magento/theme-frontend-blank
N/A
100.4.7-p1 100.4.7-p1 Clean
magento/theme-frontend-luma
N/A
100.4.7-p1 100.4.7-p1 Clean
magento/zend-cache
Zend Framework 1 Cache package
1.16.1 1.16.1 Clean
magento/zend-db
Zend Framework 1 Db package
1.16.2 1.16.2 Clean
magento/zend-exception
Zend Framework 1 Exception package
1.16.1 1.16.1 Clean
magento/zend-loader
Zend Framework 1 Loader package
1.16.1 1.16.1
No release >24m
magento/zend-log
Zend Framework 1 Log package
1.16.1 1.16.1 Clean
magento/zend-memory
Zend Framework 1 Memory package
1.16.0 1.16.0
No release >24m
magento/zend-pdf
Zend Framework 1 Pdf package
1.16.5 1.16.5 Clean
marc-mabe/php-enum
Simple and fast implementation of enumerations with native PHP
4.7.2 4.7.2 Clean
monolog/monolog
Sends your logs to files, sockets, inboxes, databases and various web services
2.10.0 3.9.0
Version gap
mtdowling/jmespath.php
Declaratively specify how to extract elements from a JSON document
2.8.0 2.8.0 Clean
nikic/php-parser
A PHP parser written in PHP
5.6.1 5.6.1 Clean
opensearch-project/opensearch-php
PHP Client for OpenSearch
2.4.5 2.4.5 Clean
paragonie/constant_time_encoding
Constant-time Implementations of RFC 4648 Encoding (Base-64, Base-32, Base-16)
3.0.0 3.0.0 Clean
paragonie/random_compat
PHP 5.x polyfill for random_bytes() and random_int() from PHP 7
9.99.100 9.99.100 Clean
paragonie/sodium_compat
Pure PHP implementation of libsodium; uses the PHP extension if it exists
2.1.0 2.1.0 Clean
paypal/module-braintree
Braintree Magento
4.7.0 4.7.0 Clean
paypal/module-braintree-core
Fork from the Magento Braintree 2.2.0 module by Gene Commerce for PayPal.
4.7.0 4.7.0 Clean
paypal/module-braintree-customer-balance
N/A
4.7.0 4.7.0 Clean
paypal/module-braintree-gift-card
N/A
4.7.0 4.7.0 Clean
paypal/module-braintree-gift-card-account
N/A
4.7.0 4.7.0 Clean
paypal/module-braintree-gift-wrapping
N/A
4.7.0 4.7.0 Clean
paypal/module-braintree-graph-ql
N/A
4.7.0 4.7.0 Clean
paypal/module-braintree-reward
N/A
4.7.0 4.7.0 Clean
pelago/emogrifier
Converts CSS styles into inline style attributes in your HTML code
7.3.0 7.3.0 Clean
php-amqplib/php-amqplib
Formerly videlalvaro/php-amqplib. This library is a pure PHP implementation of the AMQP protocol. It's been tested against RabbitMQ.
3.2.0 3.2.0 Clean
php-http/discovery
Finds and installs PSR-7, PSR-17, PSR-18 and HTTPlug implementations
1.20.0 1.20.0 Clean
phpgt/cssxpath
Convert CSS selectors to XPath queries.
1.3.0 1.3.0 Clean
phpgt/dom
Modern DOM API.
4.1.8 4.1.8 Clean
phpgt/propfunc
Property accessor and mutator functions.
1.0.1 1.0.1 Clean
phpseclib/mcrypt_compat
PHP 5.x-8.x polyfill for mcrypt extension
2.0.6 2.0.6 Clean
phpseclib/phpseclib
PHP Secure Communications Library - Pure-PHP implementations of RSA, AES, SSH2, SFTP, X.509 etc.
3.0.46 3.0.47
Version gap
psr/cache
Common interface for caching libraries
3.0.0 3.0.0 Clean
psr/clock
Common interface for reading the clock.
1.0.0 1.0.0 Clean
psr/container
Common Container Interface (PHP FIG PSR-11)
1.1.2 1.1.2 Clean
psr/event-dispatcher
Standard interfaces for event handling.
1.0.0 1.0.0 Clean
psr/http-client
Common interface for HTTP clients
1.0.3 1.0.3 Clean
psr/http-factory
PSR-17: Common interfaces for PSR-7 HTTP message factories
1.1.0 1.1.0 Clean
psr/http-message
Common interface for HTTP messages
2.0 2.0 Clean
psr/log
Common interface for logging libraries
3.0.2 3.0.2 Clean
ralouphie/getallheaders
A polyfill for getallheaders.
3.0.3 3.0.3 Clean
ramsey/collection
A PHP library for representing and manipulating collections.
2.1.1 2.1.1 Clean
ramsey/uuid
A PHP library for generating and working with universally unique identifiers (UUIDs).
4.9.1 4.9.1 Clean
react/promise
A lightweight implementation of CommonJS Promises/A for PHP
3.3.0 3.3.0 Clean
sabberworm/php-css-parser
Parser for CSS Files written in PHP
8.9.0 8.9.0 Clean
seld/jsonlint
JSON Linter
1.11.0 1.11.0 Clean
seld/phar-utils
PHAR file format utilities, for when PHP phars you up
1.2.1 1.2.1 Clean
seld/signal-handler
Simple unix signal handler that silently fails where signals are not supported for easy cross-platform development
2.0.2 2.0.2 Clean
spomky-labs/aes-key-wrap
AES Key Wrap for PHP.
7.0.0 7.0.0 Clean
spomky-labs/otphp
A PHP library for generating one time passwords according to RFC 4226 (HOTP Algorithm) and the RFC 6238 (TOTP Algorithm) and compatible with Google Authenticator
11.3.0 11.3.0 Clean
spomky-labs/pki-framework
A PHP framework for managing Public Key Infrastructures. It comprises X.509 public key certificates, attribute certificates, certification requests and certification path validation.
1.3.0 1.3.0 Clean
symfony/config
Helps you find, load, combine, autofill and validate configuration values of any kind
6.4.24 7.4.0
Version gap
symfony/console
Eases the creation of beautiful and testable command line interfaces
6.4.25 7.4.0
Version gap
symfony/css-selector
Converts CSS selectors to XPath expressions
6.4.24 8.0.0
Version gap
symfony/dependency-injection
Allows you to standardize and centralize the way objects are constructed in your application
6.4.25 7.4.0
Version gap
symfony/deprecation-contracts
A generic function and convention to trigger deprecation notices
3.6.0 3.6.0 Clean
symfony/error-handler
Provides tools to manage errors and ease debugging PHP code
7.3.2 8.0.0
Version gap
symfony/event-dispatcher
Provides tools that allow your application components to communicate with each other by dispatching events and listening to them
6.4.25 8.0.0
Version gap
symfony/event-dispatcher-contracts
Generic abstractions related to dispatching event
3.6.0 3.6.0 Clean
symfony/filesystem
Provides basic utilities for the filesystem
6.4.24 7.4.0
Version gap
symfony/finder
Finds files and directories via an intuitive fluent interface
6.4.24 8.0.0
Version gap
symfony/http-client
Provides powerful methods to fetch HTTP resources synchronously or asynchronously
7.3.3 8.0.0
Version gap
symfony/http-client-contracts
Generic abstractions related to HTTP clients
3.6.0 3.6.0 Clean
symfony/http-foundation
Defines an object-oriented layer for the HTTP specification
6.4.25 8.0.0
CVE-2025-64500
Symfony's incorrect parsing of PATH_INFO can lead to limited authorization bypass
Published: 2025-11-12
Version gap
symfony/http-kernel
Provides a structured process for converting a Request into a Response
7.2.9 7.4.0
Version gap
symfony/intl
Provides access to the localization data of the ICU library
6.4.25 7.4.0
Version gap
symfony/polyfill-ctype
Symfony polyfill for ctype functions
1.33.0 1.33.0 Clean
symfony/polyfill-intl-grapheme
Symfony polyfill for intl's grapheme_* functions
1.33.0 1.33.0 Clean
symfony/polyfill-intl-idn
Symfony polyfill for intl's idn_to_ascii and idn_to_utf8 functions
1.33.0 1.33.0 Clean
symfony/polyfill-intl-normalizer
Symfony polyfill for intl's Normalizer class and related functions
1.33.0 1.33.0 Clean
symfony/polyfill-mbstring
Symfony polyfill for the Mbstring extension
1.33.0 1.33.0 Clean
symfony/polyfill-php73
Symfony polyfill backporting some PHP 7.3+ features to lower PHP versions
1.33.0 1.33.0 Clean
symfony/polyfill-php80
Symfony polyfill backporting some PHP 8.0+ features to lower PHP versions
1.33.0 1.33.0 Clean
symfony/polyfill-php81
Symfony polyfill backporting some PHP 8.1+ features to lower PHP versions
1.33.0 1.33.0 Clean
symfony/polyfill-php83
Symfony polyfill backporting some PHP 8.3+ features to lower PHP versions
1.33.0 1.33.0 Clean
symfony/process
Executes commands in sub-processes
6.4.25 8.0.0
Version gap
symfony/service-contracts
Generic abstractions related to writing services
3.6.0 3.6.1
Version gap
symfony/string
Provides an object-oriented API to strings and deals with bytes, UTF-8 code points and grapheme clusters in a unified way
6.4.25 7.4.0
Version gap
symfony/var-dumper
Provides mechanisms for walking through any arbitrary PHP variable
7.3.3 8.0.0
Version gap
symfony/var-exporter
Allows exporting any serializable PHP data structure to plain PHP code
6.4.25 8.0.0
Version gap
symfony/yaml
Loads and dumps YAML files
7.3.3 8.0.0
Version gap
tedivm/jshrink
Javascript Minifier built in PHP
1.8.0 1.8.1
Version gap
tubalmartin/cssmin
A PHP port of the YUI CSS compressor
4.1.1 4.1.1 Clean
web-token/jwt-framework
JSON Object Signing and Encryption library for PHP and Symfony Bundle.
3.4.8 3.4.8 Clean
webimpress/safe-writer
Tool to write files safely, to avoid race conditions
2.2.0 2.2.0 Clean
webmozart/assert
Assertions to validate method input/output with nice error messages.
1.11.0 1.11.0 Clean
webonyx/graphql-php
A PHP port of GraphQL reference implementation
15.24.0 15.24.0 Clean
wikimedia/less.php
PHP port of the LESS processor
3.2.1 3.2.1 Clean
zordius/lightncandy
An extremely fast PHP implementation of handlebars ( http://handlebarsjs.com/ ) and mustache ( http://mustache.github.io/ ).
1.2.6 1.2.6 Clean
allure-framework/allure-codeception
Allure Codeception integration
2.4.0 2.4.0 Clean
allure-framework/allure-php-commons
Allure PHP commons
2.3.1 2.3.1 Clean
allure-framework/allure-phpunit
Allure PHPUnit integration
2.1.0 2.1.0 Clean
behat/gherkin
Gherkin DSL parser for PHP
4.14.0 4.14.0 Clean
clue/ndjson-react
Streaming newline-delimited JSON (NDJSON) parser and encoder for ReactPHP.
1.3.0 1.3.0 Clean
codeception/codeception
BDD-style testing framework
5.3.2 5.3.2 Clean
codeception/lib-asserts
Assertion methods used by Codeception core and Asserts module
2.2.0 2.2.0 Clean
codeception/lib-web
Library containing files used by module-webdriver and lib-innerbrowser or module-phpbrowser
1.0.7 1.0.7 Clean
codeception/module-asserts
Codeception module containing various assertions
3.2.0 3.2.0 Clean
codeception/module-sequence
Sequence module for Codeception
3.0.0 3.0.0 Clean
codeception/module-webdriver
WebDriver module for Codeception
3.2.2 3.2.2 Clean
codeception/stub
Flexible Stub wrapper for PHPUnit's Mock Builder
4.2.0 4.2.0 Clean
csharpru/vault-php
Best Vault client for PHP that you can find
4.4.1 4.4.1 Clean
dealerdirect/phpcodesniffer-composer-installer
PHP_CodeSniffer Standards Composer Installer Plugin
1.1.2 1.1.2 Clean
dg/bypass-finals
Removes final keyword from source code on-the-fly and allows mocking of final methods and classes
1.9.0 1.9.0 Clean
doctrine/annotations
Docblock Annotations Parser
2.0.2 2.0.2 Clean
doctrine/instantiator
A small, lightweight utility to instantiate objects in PHP without invoking their constructors
2.0.0 2.0.0 Clean
doctrine/lexer
PHP Doctrine Lexer parser library that can be used in Top-Down, Recursive Descent Parsers.
3.0.1 3.0.1 Clean
evenement/evenement
Événement is a very simple event dispatching library for PHP
3.0.2 3.0.2 Clean
fidry/cpu-core-counter
Tiny utility to get the number of CPU cores.
1.3.0 1.3.0 Clean
friendsofphp/php-cs-fixer
A tool to automatically fix PHP code style
3.87.2 3.87.2 Clean
laminas/laminas-diactoros
PSR HTTP Message implementations
3.6.0 3.8.0
Version gap
lusitanian/oauth
PHP 5.3+ oAuth 1/2 Library
0.8.11 0.8.11 Clean
magento/magento-coding-standard
A set of Magento specific PHP CodeSniffer rules.
38 38 Clean
magento/magento2-functional-testing-framework
Magento2 Functional Testing Framework
4.7.5 5.1.0
Version gap
magento/php-compatibility-fork
A set of sniffs for PHP_CodeSniffer that checks for PHP cross-version compatibility. This is a fork of phpcompatibility/php-compatibility
0.1.0 0.1.0
No release >24m Risky fork
mustache/mustache
A Mustache implementation in PHP.
2.14.2 2.14.2 Clean
myclabs/deep-copy
Create deep copies (clones) of your objects
1.13.4 1.13.4 Clean
pdepend/pdepend
Official version of pdepend to be handled with Composer
2.16.2 2.16.2 Clean
phar-io/manifest
Component for reading phar.io manifest information from a PHP Archive (PHAR)
2.0.4 2.0.4 Clean
phar-io/version
Library for handling version information and constraints
3.2.1 3.2.1 Clean
php-webdriver/webdriver
A PHP client for Selenium WebDriver. Previously facebook/webdriver.
1.15.2 1.15.2 Clean
phpcsstandards/phpcsutils
A suite of utility functions for use with PHP_CodeSniffer
1.1.2 1.1.2 Clean
phpmd/phpmd
PHPMD is a spin-off project of PHP Depend and aims to be a PHP equivalent of the well known Java tool PMD.
2.15.0 2.15.0 Clean
phpstan/phpstan
PHPStan - PHP Static Analysis Tool
1.12.28 1.12.28 Clean
phpunit/php-code-coverage
Library that provides collection, processing, and rendering functionality for PHP code coverage information.
9.2.32 9.2.32 Clean
phpunit/php-file-iterator
FilterIterator implementation that filters files based on a list of suffixes.
3.0.6 3.0.6 Clean
phpunit/php-invoker
Invoke callables with a timeout
3.1.1 3.1.1 Clean
phpunit/php-text-template
Simple template engine.
2.0.4 2.0.4 Clean
phpunit/php-timer
Utility class for timing
5.0.3 5.0.3 Clean
phpunit/phpunit
The PHP Unit Testing framework.
9.6.27 9.6.27 Clean
psy/psysh
An interactive shell for modern PHP.
0.12.10 0.12.10 Clean
react/cache
Async, Promise-based cache interface for ReactPHP
1.2.0 1.2.0 Clean
react/child-process
Event-driven library for executing child processes with ReactPHP.
0.6.6 0.6.6 Clean
react/dns
Async DNS resolver for ReactPHP
1.13.0 1.13.0 Clean
react/event-loop
ReactPHP's core reactor event loop that libraries can use for evented I/O.
1.5.0 1.5.0 Clean
react/socket
Async, streaming plaintext TCP/IP and secure TLS socket server and client connections for ReactPHP
1.16.0 1.16.0 Clean
react/stream
Event-driven readable and writable streams for non-blocking I/O in ReactPHP
1.4.0 1.4.0 Clean
rector/rector
Instant Upgrade and Automated Refactoring of any PHP code
1.2.10 1.2.10 Clean
sebastian/cli-parser
Library for parsing CLI options
1.0.2 1.0.2 Clean
sebastian/code-unit
Collection of value objects that represent the PHP code units
1.0.8 1.0.8 Clean
sebastian/code-unit-reverse-lookup
Looks up which function or method a line of code belongs to
2.0.3 2.0.3 Clean
sebastian/comparator
Provides the functionality to compare PHP values for equality
4.0.9 4.0.9 Clean
sebastian/complexity
Library for calculating the complexity of PHP code units
2.0.3 2.0.3 Clean
sebastian/diff
Diff implementation
4.0.6 4.0.6 Clean
sebastian/environment
Provides functionality to handle HHVM/PHP environments
5.1.5 5.1.5 Clean
sebastian/exporter
Provides the functionality to export PHP variables for visualization
4.0.6 4.0.6 Clean
sebastian/global-state
Snapshotting of global state
5.0.8 5.0.8 Clean
sebastian/lines-of-code
Library for counting the lines of code in PHP source code
1.0.4 1.0.4 Clean
sebastian/object-enumerator
Traverses array structures and object graphs to enumerate all referenced objects
4.0.4 4.0.4 Clean
sebastian/object-reflector
Allows reflection of object attributes, including inherited and non-public ones
2.0.4 2.0.4 Clean
sebastian/phpcpd
Copy/Paste Detector (CPD) for PHP code.
6.0.3 6.0.3 Clean
sebastian/recursion-context
Provides functionality to recursively process PHP variables
4.0.6 4.0.6 Clean
sebastian/resource-operations
Provides a list of PHP built-in functions that operate on resources
3.0.4 3.0.4 Clean
sebastian/type
Collection of value objects that represent the types of the PHP type system
3.2.1 3.2.1 Clean
sebastian/version
Library that helps with managing the version number of Git-hosted PHP projects
3.0.2 3.0.2 Clean
squizlabs/php_codesniffer
PHP_CodeSniffer tokenizes PHP, JavaScript and CSS files and detects violations of a defined set of coding standards.
3.13.4 3.13.4 Clean
symfony/dotenv
Registers environment variables from a .env file
6.4.24 8.0.0
Version gap
symfony/mime
Allows manipulating MIME messages
6.4.24 8.0.0
Version gap
symfony/options-resolver
Provides an improved replacement for the array_replace PHP function
7.3.3 8.0.0
Version gap
symfony/stopwatch
Provides a way to profile code
6.4.24 8.0.0
Version gap
theseer/tokenizer
A small library for converting tokenized PHP source code into XML and potentially other formats
1.2.3 1.2.3 Clean
weew/helpers-array
Useful collection of php array helpers.
1.3.1 1.3.1 Clean