← Back to CVE List

CVE-2025-1219

Published: 2025-03-30T06:15Z
Last Modified: 2025-04-15T16:54Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt