openSUSE Leap 15.6 — php-composer2 — multiple vulnerabilities (3 CVEs) — patch and remediation guide
🟠 High ⏱ 15–60 min Last verified: 25 May 2026 Affected versions: openSUSE Leap 15.6 📖 ~4 min read • Source: SUSE advisory SUSE-SU-2024:2106-1 (see also SUSE bugzilla) Related CVEs: CVE-2024-35241 CVE-2024-35242 CVE-2025-67746 Upstream summary: Composer is a dependency manager for PHP. On the 2.x branch prior to versions 2.2.24 and 2.7.7, the `status`, […]