Software Development

Christmas failure in PHPMailer versions

PHPMailer presents a remote code vulnerability in its execution. It is one of the most popular open source PHP libraries to send emails, and it is used by more than 9 millions of users worldwide, that’s why it has become a big failure.

The name PHPMailer is not often sounded but it is often used. Some of the most popular websites and open source web applications like WordPress, Drupal, 1CRM, Joomla and SugarCRM, use PHPMailer to send emails.

Dawid Golunski of Legal Hacker has discovered the critical PHPMailer vulnerability, the one that allows an attacker to compromise the web application by the remotely execution of arbitrary code in the context of the web server user.

Golunski has patched the vulnerability by making PHPMailer 5.2.18. Shortly after this, the version 5.2.19 has appear with a few fixed bugs.

The before created versions of PHPMailer are all affected, so we strongly advise developers and administrators to update the patched release, PHPMailer 5.2.18 or 5.2.19, the newest releases.

“If you’re having problems while this new execution, come with ClickIT, and our expert team will help you at all during the process. Contact Us Now!”

Published by
DevOps Guy

Recent Posts

AWS SageMaker vs Azure ML | Video

Machine learning is growing fast; the market is expected to increase 36% between 2024 and…

4 hours ago

AI Concepts Explained: AI vs GenAI vs ML vs DL vs NLP

Have you ever been confused by AI concepts like AI vs GenAI vs ML vs…

7 days ago

What Is Constitutional AI and Why Does It Matter in 2025

AI systems are changing by the hour. And one of the top priorities, besides clarity…

2 weeks ago

Agentic AI in Healthcare: Use Cases and Best Practices

Agentic AI refers to AI designed with human-like autonomy to carry out specific tasks without…

3 weeks ago

How to Create an AI Application: Steps, Challenges and Solutions

Have you ever questioned how self-driving cars navigate without human input, how chatbots can carry…

4 weeks ago

Advanced Prompt Engineering Strategies

Advanced prompt engineering strategies are important when extracting maximum value from Large Language Models (LLMs).…

1 month ago