{"document":{"aggregate_severity":{"namespace":"https://www.suse.com/support/security/rating/","text":"low"},"category":"csaf_vex","csaf_version":"2.0","distribution":{"text":"Copyright 2024 SUSE LLC. All rights reserved.","tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en","notes":[{"category":"summary","text":"SUSE CVE-2025-67746","title":"Title"},{"category":"description","text":"Composer is a dependency manager for PHP. In versions on the 2.x branch prior to 2.2.26 and 2.9.3, attackers controlling remote sources that Composer downloads from might in some way inject ANSI control characters in the terminal output of various Composer commands, causing mangled output and potentially leading to confusion or DoS of the terminal application. There is no proven exploit and this has thus a low severity but we still publish a CVE as it has potential for abuse, and we want to be on the safe side informing users that they should upgrade. Versions 2.2.26 and 2.9.3 contain a patch for the issue.","title":"Description of the CVE"},{"category":"legal_disclaimer","text":"CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).","title":"Terms of use"}],"publisher":{"category":"vendor","contact_details":"https://www.suse.com/support/security/contact/","name":"SUSE Product Security Team","namespace":"https://www.suse.com/"},"references":[{"category":"external","summary":"CVE-2025-67746","url":"https://www.suse.com/security/cve/CVE-2025-67746"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1255768 for CVE-2025-67746","url":"https://bugzilla.suse.com/1255768"},{"category":"external","summary":"Advisory link for SUSE-SU-2026:0825-1","url":"https://lists.suse.com/pipermail/sle-security-updates/2026-March/024634.html"}],"title":"SUSE CVE CVE-2025-67746","tracking":{"current_release_date":"2026-03-13T14:05:27Z","generator":{"date":"2026-01-01T00:24:23Z","engine":{"name":"cve-database.git:bin/generate-csaf-vex.pl","version":"1"}},"id":"CVE-2025-67746","initial_release_date":"2026-01-01T00:24:23Z","revision_history":[{"date":"2026-01-01T00:24:23Z","number":"2","summary":"vulnerabilities added,references added,severity changed from  to low"},{"date":"2026-01-17T00:27:57Z","number":"3","summary":"scores added,updates released"},{"date":"2026-02-04T00:30:03Z","number":"4","summary":"updates entered QA"},{"date":"2026-03-05T06:55:17Z","number":"5","summary":"unknown changes"},{"date":"2026-03-07T00:30:43Z","number":"6","summary":"more updates released,references added"},{"date":"2026-03-11T16:52:16Z","number":"7","summary":"unknown changes"},{"date":"2026-03-13T14:05:27Z","number":"8","summary":"unknown changes"}],"status":"interim","version":"8"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc-ltss:15:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc-espos:15:sp5"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc-ltss:15:sp5"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP6","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise High Performance Computing 15 SP7","product":{"name":"SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sle_hpc:15:sp7"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Web and Scripting 15 SP6","product":{"name":"SUSE Linux Enterprise Module for Web and Scripting 15 SP6","product_id":"SUSE Linux Enterprise Module for Web and Scripting 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-web-scripting:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Module for Web and Scripting 15 SP7","product":{"name":"SUSE Linux Enterprise Module for Web and Scripting 15 SP7","product_id":"SUSE Linux Enterprise Module for Web and Scripting 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sle-module-web-scripting:15:sp7"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP4-LTSS","product":{"name":"SUSE Linux Enterprise Server 15 SP4-LTSS","product_id":"SUSE Linux Enterprise Server 15 SP4-LTSS","product_identification_helper":{"cpe":"cpe:/o:suse:sles-ltss:15:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP4-TERADATA","product":{"name":"SUSE Linux Enterprise Server 15 SP4-TERADATA","product_id":"SUSE Linux Enterprise Server 15 SP4-TERADATA","product_identification_helper":{"cpe":"cpe:/o:suse:sles_teradata:15:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP5-LTSS","product":{"name":"SUSE Linux Enterprise Server 15 SP5-LTSS","product_id":"SUSE Linux Enterprise Server 15 SP5-LTSS","product_identification_helper":{"cpe":"cpe:/o:suse:sles-ltss:15:sp5"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP6","product":{"name":"SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP6-LTSS","product":{"name":"SUSE Linux Enterprise Server 15 SP6-LTSS","product_id":"SUSE Linux Enterprise Server 15 SP6-LTSS","product_identification_helper":{"cpe":"cpe:/o:suse:sles-ltss:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server 15 SP7","product":{"name":"SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sles:15:sp7"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server Teradata 15 SP4","product":{"name":"SUSE Linux Enterprise Server Teradata 15 SP4","product_id":"SUSE Linux Enterprise Server Teradata 15 SP4","product_identification_helper":{"cpe":"cpe:/o:suse:sles_teradata:15:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP4","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP4","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP4","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp4"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP5","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP5","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP5","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp5"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP6","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp6"}}},{"category":"product_name","name":"SUSE Linux Enterprise Server for SAP Applications 15 SP7","product":{"name":"SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_identification_helper":{"cpe":"cpe:/o:suse:sles_sap:15:sp7"}}},{"category":"product_name","name":"SUSE Manager Server LTS 4.3","product":{"name":"SUSE Manager Server LTS 4.3","product_id":"SUSE Manager Server LTS 4.3","product_identification_helper":{"cpe":"cpe:/o:suse:suse-manager-server-lts:4.3"}}},{"category":"product_name","name":"openSUSE Leap 15.6","product":{"name":"openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6","product_identification_helper":{"cpe":"cpe:/o:opensuse:leap:15.6"}}},{"category":"product_name","name":"openSUSE Tumbleweed","product":{"name":"openSUSE Tumbleweed","product_id":"openSUSE Tumbleweed","product_identification_helper":{"cpe":"cpe:/o:opensuse:tumbleweed"}}},{"category":"product_version","name":"php-composer2","product":{"name":"php-composer2","product_id":"php-composer2","product_identification_helper":{"cpe":"cpe:2.3:a:getcomposer:composer:*:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/php-composer2@?upstream=php-composer2.src.rpm"}}},{"category":"product_version","name":"php-composer2-2.2.3-150400.3.15.1","product":{"name":"php-composer2-2.2.3-150400.3.15.1","product_id":"php-composer2-2.2.3-150400.3.15.1","product_identification_helper":{"cpe":"cpe:2.3:a:getcomposer:composer:2.2.3:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/php-composer2@2.2.3-150400.3.15.1?upstream=php-composer2-2.2.3-150400.3.15.1.src.rpm"}}},{"category":"product_version","name":"php-composer2-2.6.4-150600.3.6.1","product":{"name":"php-composer2-2.6.4-150600.3.6.1","product_id":"php-composer2-2.6.4-150600.3.6.1","product_identification_helper":{"cpe":"cpe:2.3:a:getcomposer:composer:2.6.4:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/php-composer2@2.6.4-150600.3.6.1?upstream=php-composer2-2.6.4-150600.3.6.1.src.rpm"}}},{"category":"product_version","name":"php-composer2-2.9.3-1.1","product":{"name":"php-composer2-2.9.3-1.1","product_id":"php-composer2-2.9.3-1.1","product_identification_helper":{"cpe":"cpe:2.3:a:getcomposer:composer:2.9.3:*:*:*:*:*:*:*","purl":"pkg:rpm/suse/php-composer2@2.9.3-1.1?upstream=php-composer2-2.9.3-1.1.src.rpm"}}}],"category":"product_family","name":"SUSE Linux Enterprise"}],"category":"vendor","name":"SUSE"}],"relationships":[{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.6.4-150600.3.6.1 as component of SUSE Linux Enterprise Server 15 SP7","product_id":"SUSE Linux Enterprise Server 15 SP7:php-composer2-2.6.4-150600.3.6.1"},"product_reference":"php-composer2-2.6.4-150600.3.6.1","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.6.4-150600.3.6.1 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP7","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP7:php-composer2-2.6.4-150600.3.6.1"},"product_reference":"php-composer2-2.6.4-150600.3.6.1","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.6.4-150600.3.6.1 as component of SUSE Linux Enterprise High Performance Computing 15 SP7","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP7:php-composer2-2.6.4-150600.3.6.1"},"product_reference":"php-composer2-2.6.4-150600.3.6.1","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.6.4-150600.3.6.1 as component of SUSE Linux Enterprise Module for Web and Scripting 15 SP7","product_id":"SUSE Linux Enterprise Module for Web and Scripting 15 SP7:php-composer2-2.6.4-150600.3.6.1"},"product_reference":"php-composer2-2.6.4-150600.3.6.1","relates_to_product_reference":"SUSE Linux Enterprise Module for Web and Scripting 15 SP7"},{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.6.4-150600.3.6.1 as component of openSUSE Leap 15.6","product_id":"openSUSE Leap 15.6:php-composer2-2.6.4-150600.3.6.1"},"product_reference":"php-composer2-2.6.4-150600.3.6.1","relates_to_product_reference":"openSUSE Leap 15.6"},{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.9.3-1.1 as component of openSUSE Tumbleweed","product_id":"openSUSE Tumbleweed:php-composer2-2.9.3-1.1"},"product_reference":"php-composer2-2.9.3-1.1","relates_to_product_reference":"openSUSE Tumbleweed"},{"category":"default_component_of","full_product_name":{"name":"php-composer2-2.2.3-150400.3.15.1 as component of SUSE Linux Enterprise Server 15 SP4-TERADATA","product_id":"SUSE Linux Enterprise Server 15 SP4-TERADATA:php-composer2-2.2.3-150400.3.15.1"},"product_reference":"php-composer2-2.2.3-150400.3.15.1","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP4-TERADATA"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server 15 SP6","product_id":"SUSE Linux Enterprise Server 15 SP6:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP6","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP6:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise High Performance Computing 15 SP6","product_id":"SUSE Linux Enterprise High Performance Computing 15 SP6:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise High Performance Computing 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Module for Web and Scripting 15 SP6","product_id":"SUSE Linux Enterprise Module for Web and Scripting 15 SP6:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Module for Web and Scripting 15 SP6"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server 15 SP4-LTSS","product_id":"SUSE Linux Enterprise Server 15 SP4-LTSS:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP4-LTSS"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server 15 SP5-LTSS","product_id":"SUSE Linux Enterprise Server 15 SP5-LTSS:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP5-LTSS"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server 15 SP6-LTSS","product_id":"SUSE Linux Enterprise Server 15 SP6-LTSS:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server 15 SP6-LTSS"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server 16.0","product_id":"SUSE Linux Enterprise Server 16.0:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server 16.0"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server Teradata 15 SP4","product_id":"SUSE Linux Enterprise Server Teradata 15 SP4:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server Teradata 15 SP4"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP4","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP4:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP4"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP5","product_id":"SUSE Linux Enterprise Server for SAP Applications 15 SP5:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP Applications 15 SP5"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Linux Enterprise Server for SAP applications 16.0","product_id":"SUSE Linux Enterprise Server for SAP applications 16.0:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Linux Enterprise Server for SAP applications 16.0"},{"category":"default_component_of","full_product_name":{"name":"php-composer2 as component of SUSE Manager Server LTS 4.3","product_id":"SUSE Manager Server LTS 4.3:php-composer2"},"product_reference":"php-composer2","relates_to_product_reference":"SUSE Manager Server LTS 4.3"}]},"vulnerabilities":[{"cve":"CVE-2025-67746","ids":[{"system_name":"SUSE CVE Page","text":"https://www.suse.com/security/cve/CVE-2025-67746"}],"notes":[{"category":"general","text":"Composer is a dependency manager for PHP. In versions on the 2.x branch prior to 2.2.26 and 2.9.3, attackers controlling remote sources that Composer downloads from might in some way inject ANSI control characters in the terminal output of various Composer commands, causing mangled output and potentially leading to confusion or DoS of the terminal application. There is no proven exploit and this has thus a low severity but we still publish a CVE as it has potential for abuse, and we want to be on the safe side informing users that they should upgrade. Versions 2.2.26 and 2.9.3 contain a patch for the issue.","title":"CVE description"}],"product_status":{"first_fixed":["SUSE Linux Enterprise Server 15 SP4-TERADATA:php-composer2-2.2.3-150400.3.15.1"],"known_affected":["SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS:php-composer2","SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS:php-composer2","SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS:php-composer2","SUSE Linux Enterprise High Performance Computing 15 SP6:php-composer2","SUSE Linux Enterprise Module for Web and Scripting 15 SP6:php-composer2","SUSE Linux Enterprise Server 15 SP4-LTSS:php-composer2","SUSE Linux Enterprise Server 15 SP5-LTSS:php-composer2","SUSE Linux Enterprise Server 15 SP6-LTSS:php-composer2","SUSE Linux Enterprise Server 15 SP6:php-composer2","SUSE Linux Enterprise Server Teradata 15 SP4:php-composer2","SUSE Linux Enterprise Server for SAP Applications 15 SP4:php-composer2","SUSE Linux Enterprise Server for SAP Applications 15 SP5:php-composer2","SUSE Linux Enterprise Server for SAP Applications 15 SP6:php-composer2","SUSE Manager Server LTS 4.3:php-composer2"],"recommended":["SUSE Linux Enterprise High Performance Computing 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Module for Web and Scripting 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Server 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Server for SAP Applications 15 SP7:php-composer2-2.6.4-150600.3.6.1","openSUSE Leap 15.6:php-composer2-2.6.4-150600.3.6.1","openSUSE Tumbleweed:php-composer2-2.9.3-1.1"]},"references":[{"category":"external","summary":"CVE-2025-67746","url":"https://www.suse.com/security/cve/CVE-2025-67746"},{"category":"external","summary":"SUSE Security Ratings","url":"https://www.suse.com/support/security/rating/"},{"category":"external","summary":"SUSE Bug 1255768 for CVE-2025-67746","url":"https://bugzilla.suse.com/1255768"},{"category":"external","summary":"Advisory link for SUSE-SU-2026:0825-1","url":"https://lists.suse.com/pipermail/sle-security-updates/2026-March/024634.html"}],"remediations":[{"category":"vendor_fix","details":"To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n","product_ids":["SUSE Linux Enterprise High Performance Computing 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Module for Web and Scripting 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Server 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Server for SAP Applications 15 SP7:php-composer2-2.6.4-150600.3.6.1","openSUSE Leap 15.6:php-composer2-2.6.4-150600.3.6.1","openSUSE Tumbleweed:php-composer2-2.9.3-1.1"]},{"category":"no_fix_planned","details":"There is no fix planned for these products.\n","product_ids":["SUSE Linux Enterprise Server 16.0:php-composer2","SUSE Linux Enterprise Server for SAP applications 16.0:php-composer2"]}],"scores":[{"cvss_v3":{"baseScore":3.3,"baseSeverity":"LOW","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L","version":"3.1"},"products":["SUSE Linux Enterprise High Performance Computing 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Module for Web and Scripting 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Server 15 SP7:php-composer2-2.6.4-150600.3.6.1","SUSE Linux Enterprise Server for SAP Applications 15 SP7:php-composer2-2.6.4-150600.3.6.1","openSUSE Leap 15.6:php-composer2-2.6.4-150600.3.6.1","openSUSE Tumbleweed:php-composer2-2.9.3-1.1"]}],"threats":[{"category":"impact","date":"2025-12-30T17:05:03Z","details":"low"}],"title":"CVE-2025-67746"}]}