PHP-Fusion Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for PHP-Fusion products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
1
In CISA KEV
0
Beyond CISA KEV
1
Sensor Observed
0
Virtual Patch Available
0
PHP-Fusion KEVs Added by Year
Loading...
1 PHP-Fusion KEV added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2020-24949
Privilege escalation in PHP-Fusion 9.03.50 downloads/downloads.php allows an authenticated user (not admin) to send a crafted request to the server... |
PHP-Fusion | High | Not in CISA | 15 Jun 2026 |
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology