CVE-2018-19785: PHP-Proxy

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

PHP-Proxy through 5.1.0 has Cross-Site Scripting (XSS) via the URL field in index.php.

Affected products

  • PHP-Proxy PHP-Proxy: up to and including 5.1.0

Published 2018-12-01. Last modified 2026-06-17.