ImpactThis is an information disclosure vulnerability originating from PHP's base image. This vulnerability exposes the PHP version through an X-Powered-By header, which attackers could exploit to fingerprint the server and identify potential weaknesses.
WorkaroundsThe mitigation requires changing the expose_php variable from "On" to "Off" in the file located at /usr/local/etc/php/php.ini.
                
            References
                    Configurations
                    No configuration.
History
                    10 Jul 2025, 13:17
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | 
09 Jul 2025, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-07-09 16:15
Updated : 2025-07-10 13:17
NVD link : CVE-2025-7381
Mitre link : CVE-2025-7381
CVE.ORG link : CVE-2025-7381
JSON object : View
Products Affected
                No product.
CWE
                
                    
                        
                        CWE-497
                        
            Exposure of Sensitive System Information to an Unauthorized Control Sphere
