packagist package report

Is codeigniter/framework safe?

5 known vulnerabilities, worst severity CRITICAL.

cvss
9.0

how bad it is if exploited, out of 10

epss
not scored

chance of exploitation in the next 30 days

xyz score
4.0

CyberXYZ composite, out of 10

fig. 01 — GHSA-27qr-636m-wxg2, the advisory selected below

// advisories

GHSA-27qr-636m-wxg2

CRITICAL

CodeIgniter 3.1.0 addressed a critical security issue within the ODBC database driver. This update includes crucial fixes to mitigate a SQL injection vulnerability, preventing potential exploitation by attackers. It is noteworthy that these fixes render the query builder and escape() functions incompatible with the ODBC driver. However, the update introduces actual query binding as a more secure a

Affected
< 3.1.0
Fixed in
3.1.0
Published
2024-05-15
Source
github

GHSAreferencereferencereference


// ai model usage

Tracked for PyPI packages. HuggingFace models declare Python dependencies, so packagist packages are not covered.


Checked 2026-09-22 at 01:29 UTC. The most recent advisory here was published 2024-05-15. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is codeigniter/framework safe? packagist package security report | CyberXYZ