Known Vulnerabilities for Composer by Docker
Listed below are 1 of the newest known vulnerabilities associated with "Composer" by "Docker".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100848 json | AzuraCast (Composer package azuracast/azuracast) before 0.23.8 validates a station's "Remote Relay" URL only for URL syntax a... | Not Provided | 2026-09-27 | 2026-09-28 |
| CVE-2026-97262 json | Contributor Cross Site Scripting (XSS) in Visual Composer Website Builder <= 45.16.2 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-85170 json | n8n versions before 1.123.73, 2.35.4, and 2.36.2 pass message content in the Gmail (v1) and Brevo nodes to the mail composer ... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84361 json | Composer is a dependency Manager for the PHP language. From 1.0 until 2.2.30 and 2.10.3, a malicious dependency package from ... | Not Provided | 2026-09-01 | 2026-09-03 |
| CVE-2026-83043 json | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions t... | Not Provided | 2026-09-15 | 2026-09-16 |
| CVE-2026-83039 json | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions t... | Not Provided | 2026-09-15 | 2026-09-16 |
| CVE-2026-78175 json | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to PHP Object Injection in all vers... | Not Provided | 2026-09-12 | 2026-09-15 |
| CVE-2026-76658 json | A vulnerability has been identified in the SSH daemon of HPE Networking Fabric Composer that could allow an unauthenticated r... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-76657 json | Vulnerabilities have been identified in the API of HPE Networking Fabric Composer that could potentially allow an unauthentic... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-73959 json | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions t... | Not Provided | 2026-09-15 | 2026-09-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Docker | Composer | 1.8.3 | |||
| Application | Docker | Composer | 1.8.2 | |||
| Application | Docker | Composer | 1.8.0 | |||
| Application | Docker | Composer | 1.7.2 | |||
| Application | Docker | Composer | 1.7.1 | |||
| Application | Docker | Composer | 1.7.0 | |||
| Application | Docker | Composer | 1.6.5 | |||
| Application | Docker | Composer | 1.6.4 | |||
| Application | Docker | Composer | 1.6.3 | |||
| Application | Docker | Composer | 1.6.2 | |||
| Application | Docker | Composer | 1.6.1 | |||
| Application | Docker | Composer | 1.6.0 | |||
| Application | Docker | Composer | 1.5.6 | |||
| Application | Docker | Composer | 1.5.5 | |||
| Application | Docker | Composer | 1.5.2 | |||
| Application | Docker | Composer | 1.5.1 | |||
| Application | Docker | Composer | 1.5.0 | |||
| Application | Docker | Composer | 1.4.3 | |||
| Application | Docker | Composer | 1.4.2 | |||
| Application | Docker | Composer | 1.4.1 |