Package Health

php-standard-library/h2

HTTP/2 binary framing protocol implementation

Latest 6.3.0PackagistPackagist

72%

Total Score

caution

Usable with caveats: recent project activity is concentrated in one contributor, despite strong organization backing.

Are you affected? Scan for Free

Health Score Breakdown

Repo commit activitycaution

Only three commits were recorded in the last three months, which is modest activity and leaves less evidence of sustained maintenance than the release history provides.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.

Vulnerabilities

TitleVersionsSeverity
CVE-2026-48979
php-standard-library/h2 is vulnerable to Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') in versions 6.1.0 - 6.1.2 and 6.2.0 - 6.2.1.
6.1.0 - 6.1.26.2.0 - 6.2.1
High

Package versions

Maintainers

Seifeddine Gmati
Contributors

Direct Dependencies

DependencyLast ReleaseScore
php-standard-library/io
Version ^6.0
—
—
php-standard-library/async
Version ^6.0
—
—
php-standard-library/hpack
Version ^6.1
—
—
php-standard-library/default
Version ^6.0
—
—
php-standard-library/date-time
Version ^6.0
—
—

Weekly Downloads

Info

Last Published
15 days ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform