Advisory Database
  • Advisories
  • Dependency Scanning
  1. composer
  2. ›
  3. torrentpier/torrentpier
  4. ›
  5. GHSA-h29g-c9cx-c73q

GHSA-h29g-c9cx-c73q: torrentpier has PHP Serialize Injections

May 11, 2026

Hi, there. We’ve found PHP Serialize Injections in your project “torrentpier". According to the OWASP, it can pose a significant risk: enable an attacker to modify serialized objects in order to inject malicious data into the application code, resulting in code execution or an arbitrary reading of the file on any vulnerable system.

References

  • github.com/advisories/GHSA-h29g-c9cx-c73q
  • github.com/torrentpier/torrentpier/security/advisories/GHSA-h29g-c9cx-c73q

Code Behaviors & Features

Detect and mitigate GHSA-h29g-c9cx-c73q with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions before 2.4.4

Fixed versions

  • 2.4.4

Solution

Upgrade to version 2.4.4 or above.

Weakness

  • CWE-502: Deserialization of Untrusted Data

Source file

packagist/torrentpier/torrentpier/GHSA-h29g-c9cx-c73q.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Thu, 11 Jun 2026 12:21:51 +0000.