prism-php/prism is vulnerable to Incorrect Permission Assignment for Critical Resource
50
Medium Risk
Affected versions of this package enable the Prism server by default in new installations without access restrictions, exposing it to the entire internet. Attackers can exploit these open servers to perform unauthorized actions, such as consuming resources or executing malicious operations. This misuse can lead to significant financial costs for the server owner due to excessive resource consumption or service abuse.
You are affected if you are using a version that falls within the vulnerable range.
prism-php/prism is vulnerable to Incorrect Permission Assignment for Critical Resource in versions 0.1.0 - 0.78.0.
Upgrade the prism-php/prism library to a patch version or set PRISM_SERVER_ENABLED config to false.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant