diff --git a/.gitignore b/.gitignore
index 24a7179..8bb2cfa 100644
--- a/.gitignore
+++ b/.gitignore
@@ -27,3 +27,6 @@
!web/downloads/
!web/downloads/**/*.zip
!web/downloads/**/*.deb
+
+# source browser cache clone
+web/.src/
diff --git a/.tmp-2114114980114993264.json b/.tmp-2114114980114993264.json
new file mode 100644
index 0000000..547aba4
--- /dev/null
+++ b/.tmp-2114114980114993264.json
@@ -0,0 +1 @@
+{"message": "mirror: pmm -> 0.1.5 (strncat fix)", "content": "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", "sha": "{\"message\":\"Not Found\",\"documentation_url\":\"https://docs.github.com/rest/repos/contents#get-repository-content\",\"status\":\"404\"}"}
\ No newline at end of file
diff --git a/.tmp-2754591309307062451.json b/.tmp-2754591309307062451.json
new file mode 100644
index 0000000..5b4fbc9
--- /dev/null
+++ b/.tmp-2754591309307062451.json
@@ -0,0 +1 @@
+{"message": "mirror: pmm -> 0.1.5 (strncat fix)", "content": "ew0KICAibmFtZSI6ICJwbW0iLA0KICAidmVyc2lvbiI6ICIwLjEuNSIsDQogICJmaWxlIjogIjAuMS41LXdpbmRvd3MtYW1kNjQucGRtIiwNCiAgIm9zIjogIndpbmRvd3MiLA0KICAiYXJjaCI6ICJhbWQ2NCIsDQogICJ1cmwiOiAiaHR0cHM6Ly9wbW0ucGFybHouY29tL21pcnJvci9wYWNrYWdlcy9wbW0vMC4xLjUtd2luZG93cy1hbWQ2NC5wZG0iLA0KICAic2hhMjU2IjogImFlNWFkYmY2NzIxZGRjNjczNDIxMDdkNmY0OWQ2ZmU2OTdhNTc0MjY2Y2IwNmY0NmJkZDIxM2QxYTMxZjdhOGEiLA0KICAiZGVzY3JpcHRpb24iOiAiUE1NIHYwLjEuNSAoc3RybmNhdCBmaXgpIg0KfQ==", "sha": "{\"message\":\"Not Found\",\"documentation_url\":\"https://docs.github.com/rest/repos/contents#get-repository-content\",\"status\":\"404\"}"}
\ No newline at end of file
diff --git a/.tmp-8535944531281948763.json b/.tmp-8535944531281948763.json
new file mode 100644
index 0000000..897affc
--- /dev/null
+++ b/.tmp-8535944531281948763.json
@@ -0,0 +1 @@
+{"message": "mirror: pmm -> 0.1.5 (strncat fix)", "content": "ew0KICAibmFtZSI6ICJwbW0iLA0KICAidmVyc2lvbiI6ICIwLjEuNSIsDQogICJmaWxlIjogIjAuMS41LWxpbnV4LWFtZDY0LnBkbSIsDQogICJvcyI6ICJsaW51eCIsDQogICJhcmNoIjogImFtZDY0IiwNCiAgInVybCI6ICJodHRwczovL3BtbS5wYXJsei5jb20vbWlycm9yL3BhY2thZ2VzL3BtbS8wLjEuNS1saW51eC1hbWQ2NC5wZG0iLA0KICAic2hhMjU2IjogIjhiZTkzMTQ0N2I2NjRhNDY3ZWJiYjE0MjAwOGE4N2ZmYzdlMmYzMGVhNmEyZTBkODk4MDMyNWIwNGYyM2JjYmMiLA0KICAiZGVzY3JpcHRpb24iOiAiUE1NIHYwLjEuNSAoc3RybmNhdCBmaXgpIg0KfQ==", "sha": "{\"message\":\"Not Found\",\"documentation_url\":\"https://docs.github.com/rest/repos/contents#get-repository-content\",\"status\":\"404\"}"}
\ No newline at end of file
diff --git a/ParlzDownloadMAX/PHP/README.md b/ParlzDownloadMAX/PHP/README.md
new file mode 100644
index 0000000..33335f9
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/README.md
@@ -0,0 +1,140 @@
+# PHP Project
+
+> A brief description of your PHP project
+
+## Requirements
+
+- **PHP**: >= 8.0 (recommended: PHP 8.2 or 8.3)
+- **Extensions**: openssl, pdo_mysql, mbstring, json, curl
+- **Database**: MySQL 5.7+ / MariaDB 10.4+ / PostgreSQL 13+
+- **Web Server**: Nginx / Apache / IIS (with FastCGI)
+- **Composer**: Latest version ([getcomposer.org](https://getcomposer.org))
+
+> For Windows users, consider using WSL2 or local stacks like XAMPP/WampServer/Laragon.
+
+## Installation
+
+1. Clone the repository
+
+ git clone https://github.com/yourusername/yourproject.git
+ cd yourproject
+
+2. Install dependencies via Composer
+
+ composer install
+
+3. Environment configuration
+
+ cp .env.example .env
+
+ Edit .env file with your database credentials and other settings.
+
+4. Generate application key (if using Laravel or similar)
+
+ php artisan key:generate
+
+5. Run database migrations (if applicable)
+
+ php artisan migrate
+
+## Configuration
+
+Key configuration files:
+
+- `.env` - Environment variables (database, API keys, app settings)
+- `config/app.php` - Application-level configuration
+- `config/database.php` - Database connection settings
+- `php.ini` - PHP runtime settings
+
+PHP INI recommendations for production:
+
+ memory_limit = 256M
+ upload_max_filesize = 64M
+ post_max_size = 64M
+ max_execution_time = 300
+ date.timezone = UTC
+ opcache.enable = 1
+ opcache.memory_consumption = 128
+
+## Usage
+
+Development server (quick start):
+
+ php -S localhost:8000 -t public
+
+ Open browser: http://localhost:8000
+
+Production deployment - Nginx:
+
+ server {
+ listen 80;
+ server_name yourdomain.com;
+ root /var/www/yourproject/public;
+ index index.php;
+ location / {
+ try_files $uri $uri/ /index.php?$query_string;
+ }
+ location ~ \.php$ {
+ include fastcgi_params;
+ fastcgi_pass unix:/var/run/php/php8.2-fpm.sock;
+ fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name;
+ }
+ }
+
+Production deployment - Apache (.htaccess):
+
+
+ RewriteEngine On
+ RewriteCond %{REQUEST_FILENAME} !-f
+ RewriteCond %{REQUEST_FILENAME} !-d
+ RewriteRule ^ index.php [QSA,L]
+
+
+Running scheduled tasks (cron) - Linux:
+
+ * * * * * php /path/to/yourproject/artisan schedule:run >> /dev/null 2>&1
+
+## Directory Structure
+
+ yourproject/
+ ├── app/ - Application core logic
+ ├── bootstrap/ - Framework bootstrapping
+ ├── config/ - Configuration files
+ ├── database/ - Migrations and seeds
+ ├── public/ - Public web root (entry point)
+ │ ├── index.php - Front controller
+ │ └── .htaccess - Apache rewrite rules
+ ├── resources/ - Views, assets, language files
+ ├── routes/ - Route definitions
+ ├── storage/ - Logs, cache, file uploads
+ ├── tests/ - Unit and feature tests
+ ├── vendor/ - Composer dependencies
+ ├── .env - Environment configuration
+ ├── composer.json - Project dependencies
+ ├── composer.lock - Locked dependency versions
+ └── README.md - This file
+
+## Contributing
+
+1. Fork the repository
+2. Create a feature branch: git checkout -b feature/amazing-feature
+3. Commit your changes: git commit -m 'Add some amazing feature'
+4. Push to the branch: git push origin feature/amazing-feature
+5. Open a Pull Request
+
+Coding Standards:
+
+- Follow PSR-12 coding standards
+- Write unit tests for new features
+- Update documentation accordingly
+
+## License
+
+This project is licensed under the MIT License.
+
+## Acknowledgments
+
+- [PHP](https://php.net)
+- [Composer](https://getcomposer.org)
+
+Built with love using PHP
\ No newline at end of file
diff --git a/ParlzDownloadMAX/PHP/bin/README.md b/ParlzDownloadMAX/PHP/bin/README.md
new file mode 100644
index 0000000..5b8ec6f
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/README.md
@@ -0,0 +1,172 @@
+
+
+# The PHP Interpreter
+
+PHP is a popular general-purpose scripting language that is especially suited to
+web development. Fast, flexible and pragmatic, PHP powers everything from your
+blog to the most popular websites in the world. PHP is distributed under the
+[PHP License v3.01](LICENSE).
+
+[](https://github.com/php/php-src/actions/workflows/push.yml)
+[](https://issues.oss-fuzz.com/issues?q=project:php)
+
+## Documentation
+
+The PHP manual is available at [php.net/docs](https://www.php.net/docs).
+
+## Installation
+
+### Prebuilt packages and binaries
+
+Prebuilt packages and binaries can be used to get up and running fast with PHP.
+
+For Windows, the PHP binaries can be obtained from
+[windows.php.net](https://windows.php.net). After extracting the archive the
+`*.exe` files are ready to use.
+
+For other systems, see the [installation chapter](https://www.php.net/install).
+
+### Building PHP source code
+
+*For Windows, see [Build your own PHP on Windows](https://wiki.php.net/internals/windows/stepbystepbuild_sdk_2).*
+
+For a minimal PHP build from Git, you will need autoconf, bison, and re2c. For
+a default build, you will additionally need libxml2 and libsqlite3.
+
+On Ubuntu, you can install these using:
+
+```shell
+sudo apt install -y pkg-config build-essential autoconf bison re2c libxml2-dev libsqlite3-dev
+```
+
+On Fedora, you can install these using:
+
+```shell
+sudo dnf install re2c bison autoconf make libtool ccache libxml2-devel sqlite-devel
+```
+
+On MacOS, you can install these using `brew`:
+
+```shell
+brew install autoconf bison re2c libiconv libxml2 sqlite
+```
+
+or with `MacPorts`:
+
+```shell
+sudo port install autoconf bison re2c libiconv libxml2 sqlite3
+```
+
+Generate configure:
+
+```shell
+./buildconf
+```
+
+Configure your build. `--enable-debug` is recommended for development, see
+`./configure --help` for a full list of options.
+
+```shell
+# For development
+./configure --enable-debug
+# For production
+./configure
+```
+
+Build PHP. To speed up the build, specify the maximum number of jobs using the
+`-j` argument:
+
+```shell
+make -j4
+```
+
+The number of jobs should usually match the number of available cores, which
+can be determined using `nproc`.
+
+## Testing PHP source code
+
+PHP ships with an extensive test suite, the command `make test` is used after
+successful compilation of the sources to run this test suite.
+
+It is possible to run tests using multiple cores by setting `-jN` in
+`TEST_PHP_ARGS` or `TESTS`:
+
+```shell
+make TEST_PHP_ARGS=-j4 test
+```
+
+Shall run `make test` with a maximum of 4 concurrent jobs: Generally the maximum
+number of jobs should not exceed the number of cores available.
+
+Use the `TEST_PHP_ARGS` or `TESTS` variable to test only specific directories:
+
+```shell
+make TESTS=tests/lang/ test
+```
+
+The [qa.php.net](https://qa.php.net) site provides more detailed info about
+testing and quality assurance.
+
+## Installing PHP built from source
+
+After a successful build (and test), PHP may be installed with:
+
+```shell
+make install
+```
+
+Depending on your permissions and prefix, `make install` may need superuser
+permissions.
+
+## PHP extensions
+
+Extensions provide additional functionality on top of PHP. PHP consists of many
+essential bundled extensions. Additional extensions can be found in the PHP
+Extension Community Library - [PECL](https://pecl.php.net).
+
+## Contributing
+
+The PHP source code is located in the Git repository at
+[github.com/php/php-src](https://github.com/php/php-src). Contributions are most
+welcome by forking the repository and sending a pull request.
+
+Discussions are done on GitHub, but depending on the topic can also be relayed
+to the official PHP developer mailing list internals@lists.php.net.
+
+New features require an RFC and must be accepted by the developers. See
+[Request for comments - RFC](https://wiki.php.net/rfc) and
+[Voting on PHP features](https://wiki.php.net/rfc/voting) for more information
+on the process.
+
+Bug fixes don't require an RFC. If the bug has a GitHub issue, reference it in
+the commit message using `GH-NNNNNN`. Use `#NNNNNN` for tickets in the old
+[bugs.php.net](https://bugs.php.net) bug tracker.
+
+ Fix GH-7815: php_uname doesn't recognise latest Windows versions
+ Fix #55371: get_magic_quotes_gpc() throws deprecation warning
+
+See [Git workflow](https://wiki.php.net/vcs/gitworkflow) for details on how pull
+requests are merged.
+
+### Guidelines for contributors
+
+See further documents in the repository for more information on how to
+contribute:
+
+- [Contributing to PHP](/CONTRIBUTING.md)
+- [PHP coding standards](/CODING_STANDARDS.md)
+- [Internal documentation](https://php.github.io/php-src/)
+- [Mailing list rules](/docs/mailinglist-rules.md)
+- [PHP release process](/docs/release-process.md)
+
+## Credits
+
+For the list of people who've put work into PHP, please see the
+[PHP credits page](https://www.php.net/credits.php).
diff --git a/ParlzDownloadMAX/PHP/bin/brotlicommon.dll b/ParlzDownloadMAX/PHP/bin/brotlicommon.dll
new file mode 100644
index 0000000..02b9f6c
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/brotlicommon.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/brotlidec.dll b/ParlzDownloadMAX/PHP/bin/brotlidec.dll
new file mode 100644
index 0000000..3ad70f6
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/brotlidec.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/dev/php8.lib b/ParlzDownloadMAX/PHP/bin/dev/php8.lib
new file mode 100644
index 0000000..bfc08ee
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/dev/php8.lib differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_bz2.dll b/ParlzDownloadMAX/PHP/bin/ext/php_bz2.dll
new file mode 100644
index 0000000..5ac89d8
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_bz2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_com_dotnet.dll b/ParlzDownloadMAX/PHP/bin/ext/php_com_dotnet.dll
new file mode 100644
index 0000000..e8b774b
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_com_dotnet.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_curl.dll b/ParlzDownloadMAX/PHP/bin/ext/php_curl.dll
new file mode 100644
index 0000000..7cd96f0
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_curl.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_dba.dll b/ParlzDownloadMAX/PHP/bin/ext/php_dba.dll
new file mode 100644
index 0000000..13d774f
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_dba.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_dl_test.dll b/ParlzDownloadMAX/PHP/bin/ext/php_dl_test.dll
new file mode 100644
index 0000000..a2449de
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_dl_test.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_enchant.dll b/ParlzDownloadMAX/PHP/bin/ext/php_enchant.dll
new file mode 100644
index 0000000..3493b43
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_enchant.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_exif.dll b/ParlzDownloadMAX/PHP/bin/ext/php_exif.dll
new file mode 100644
index 0000000..28630b0
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_exif.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_ffi.dll b/ParlzDownloadMAX/PHP/bin/ext/php_ffi.dll
new file mode 100644
index 0000000..d9e703a
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_ffi.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_fileinfo.dll b/ParlzDownloadMAX/PHP/bin/ext/php_fileinfo.dll
new file mode 100644
index 0000000..226778b
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_fileinfo.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_ftp.dll b/ParlzDownloadMAX/PHP/bin/ext/php_ftp.dll
new file mode 100644
index 0000000..31a2bd2
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_ftp.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_gd.dll b/ParlzDownloadMAX/PHP/bin/ext/php_gd.dll
new file mode 100644
index 0000000..b4d7570
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_gd.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_gettext.dll b/ParlzDownloadMAX/PHP/bin/ext/php_gettext.dll
new file mode 100644
index 0000000..33aadc1
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_gettext.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_gmp.dll b/ParlzDownloadMAX/PHP/bin/ext/php_gmp.dll
new file mode 100644
index 0000000..d4a576a
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_gmp.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_intl.dll b/ParlzDownloadMAX/PHP/bin/ext/php_intl.dll
new file mode 100644
index 0000000..913544e
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_intl.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_ldap.dll b/ParlzDownloadMAX/PHP/bin/ext/php_ldap.dll
new file mode 100644
index 0000000..4d67404
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_ldap.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_mbstring.dll b/ParlzDownloadMAX/PHP/bin/ext/php_mbstring.dll
new file mode 100644
index 0000000..0396e9b
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_mbstring.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_mysqli.dll b/ParlzDownloadMAX/PHP/bin/ext/php_mysqli.dll
new file mode 100644
index 0000000..3a6a25e
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_mysqli.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_odbc.dll b/ParlzDownloadMAX/PHP/bin/ext/php_odbc.dll
new file mode 100644
index 0000000..0178a89
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_odbc.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_openssl.dll b/ParlzDownloadMAX/PHP/bin/ext/php_openssl.dll
new file mode 100644
index 0000000..223fb93
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_openssl.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_pdo_firebird.dll b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_firebird.dll
new file mode 100644
index 0000000..0128ce7
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_firebird.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_pdo_mysql.dll b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_mysql.dll
new file mode 100644
index 0000000..0e1bad7
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_mysql.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_pdo_odbc.dll b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_odbc.dll
new file mode 100644
index 0000000..0c11a06
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_odbc.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_pdo_pgsql.dll b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_pgsql.dll
new file mode 100644
index 0000000..914c0e2
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_pgsql.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_pdo_sqlite.dll b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_sqlite.dll
new file mode 100644
index 0000000..92a5a6c
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_pdo_sqlite.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_pgsql.dll b/ParlzDownloadMAX/PHP/bin/ext/php_pgsql.dll
new file mode 100644
index 0000000..2073b3d
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_pgsql.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_shmop.dll b/ParlzDownloadMAX/PHP/bin/ext/php_shmop.dll
new file mode 100644
index 0000000..b33d5be
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_shmop.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_snmp.dll b/ParlzDownloadMAX/PHP/bin/ext/php_snmp.dll
new file mode 100644
index 0000000..9c93537
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_snmp.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_soap.dll b/ParlzDownloadMAX/PHP/bin/ext/php_soap.dll
new file mode 100644
index 0000000..3d4acb3
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_soap.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_sockets.dll b/ParlzDownloadMAX/PHP/bin/ext/php_sockets.dll
new file mode 100644
index 0000000..f6121be
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_sockets.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_sodium.dll b/ParlzDownloadMAX/PHP/bin/ext/php_sodium.dll
new file mode 100644
index 0000000..bce6e55
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_sodium.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_sqlite3.dll b/ParlzDownloadMAX/PHP/bin/ext/php_sqlite3.dll
new file mode 100644
index 0000000..28b8473
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_sqlite3.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_sysvshm.dll b/ParlzDownloadMAX/PHP/bin/ext/php_sysvshm.dll
new file mode 100644
index 0000000..c66de5d
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_sysvshm.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_tidy.dll b/ParlzDownloadMAX/PHP/bin/ext/php_tidy.dll
new file mode 100644
index 0000000..6dbf1e2
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_tidy.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_xsl.dll b/ParlzDownloadMAX/PHP/bin/ext/php_xsl.dll
new file mode 100644
index 0000000..802f3c0
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_xsl.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_zend_test.dll b/ParlzDownloadMAX/PHP/bin/ext/php_zend_test.dll
new file mode 100644
index 0000000..458d38a
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_zend_test.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/ext/php_zip.dll b/ParlzDownloadMAX/PHP/bin/ext/php_zip.dll
new file mode 100644
index 0000000..02e82e5
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/ext/php_zip.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/extras/sbom/php.cdx.json b/ParlzDownloadMAX/PHP/bin/extras/sbom/php.cdx.json
new file mode 100644
index 0000000..38e0265
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/extras/sbom/php.cdx.json
@@ -0,0 +1,8209 @@
+{
+ "bomFormat": "CycloneDX",
+ "specVersion": "1.6",
+ "serialNumber": "urn:uuid:7594acf2-981b-43c3-bbb3-658c9f2fd120",
+ "version": 1,
+ "metadata": {
+ "timestamp": "2026-08-25T21:29:48Z",
+ "tools": {
+ "components": [
+ {
+ "type": "application",
+ "name": "php",
+ "version": "8.5.10"
+ }
+ ]
+ },
+ "component": {
+ "type": "application",
+ "bom-ref": "pkg:generic/php@8.5.10",
+ "name": "php",
+ "version": "8.5.10",
+ "purl": "pkg:generic/php@8.5.10",
+ "cpe": "cpe:2.3:a:php:php:8.5.10:*:*:*:*:*:*:*",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "licenses": [
+ {
+ "license": {
+ "id": "PHP-3.01"
+ }
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:dependency-sbom-status",
+ "value": "present"
+ }
+ ],
+ "copyright": "Copyright (c) 1999 - 2024 The PHP Group. All rights reserved."
+ }
+ },
+ "components": [
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/berkeley-uuencode",
+ "name": "Berkeley uuencode",
+ "version": "snapshot-25636b9321c2",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/berkeley-uuencode",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-4-Clause-UC"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "25636b9321c2859ac28ee4ad7148270ebccaa79143777b623d84985622875597"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/standard/uuencode.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "25636b9321c2859ac28ee4ad7148270ebccaa79143777b623d84985622875597"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/boost-context-assembly",
+ "name": "Boost.Context assembly",
+ "version": "snapshot-6abda7f14758",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/boost-context-assembly",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSL-1.0"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "6abda7f14758e771821c255ee9be016c31e181d259bfe394098769013c7b1192"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "Zend/asm"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "6abda7f14758e771821c255ee9be016c31e181d259bfe394098769013c7b1192"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/crypt_blowfish@1.3",
+ "name": "crypt_blowfish",
+ "version": "1.3",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/crypt_blowfish@1.3",
+ "licenses": [
+ {
+ "license": {
+ "id": "bcrypt-Solar-Designer"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "f3f115c759bf08bdb7f41a47fd8afdd7985ee51227298caa72530ffb14c10e94"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/standard/crypt_blowfish.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "f3f115c759bf08bdb7f41a47fd8afdd7985ee51227298caa72530ffb14c10e94"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/dynasm@1.5.0",
+ "name": "DynASM",
+ "version": "1.5.0",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/dynasm@1.5.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "d2d56ba8be243d8330b96f0aaf416dd4f8e153667a9ee07fcfe5cf7cf8e2fa22"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/opcache/jit/ir/dynasm"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "d2d56ba8be243d8330b96f0aaf416dd4f8e153667a9ee07fcfe5cf7cf8e2fa22"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/freesec-libcrypt",
+ "name": "FreeSec libcrypt",
+ "version": "snapshot-6b1d1d57b0af",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/freesec-libcrypt",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "6b1d1d57b0af0da0fcdb3a72c5a2137a7c489303b8d55558db7359f10337aa2f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/standard/crypt_freesec.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "6b1d1d57b0af0da0fcdb3a72c5a2137a7c489303b8d55558db7359f10337aa2f"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libarchive-format-octal",
+ "name": "libarchive tar format_octal",
+ "version": "snapshot-36341177800f",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libarchive-format-octal",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-2-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "36341177800fc8f5646c62cc2a4b3dacd24b58b277cdfef47ce902e014288b17"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/phar/tar.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "36341177800fc8f5646c62cc2a4b3dacd24b58b277cdfef47ce902e014288b17"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libavifinfo@2b924defa4c2cd227540efe164067a8cc913eeba",
+ "name": "libavifinfo",
+ "version": "2b924defa4c2cd227540efe164067a8cc913eeba",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libavifinfo@2b924defa4c2cd227540efe164067a8cc913eeba",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-2-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "eebfce3dfe05d5173f6c95afcfb780eb4eda76cbff22d7149dffc6fd4590a8a1"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/standard/libavifinfo"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "eebfce3dfe05d5173f6c95afcfb780eb4eda76cbff22d7149dffc6fd4590a8a1"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libbcmath@0.2",
+ "name": "libbcmath",
+ "version": "0.2",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libbcmath@0.2",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-only"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "1dc7ff5094242a377246b4462aeb0efd5142dc5fba9c4ab3bdfdc263f009973e"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/bcmath/libbcmath"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "1dc7ff5094242a377246b4462aeb0efd5142dc5fba9c4ab3bdfdc263f009973e"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libgd@2.0.35",
+ "name": "libgd",
+ "version": "2.0.35",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libgd@2.0.35",
+ "licenses": [
+ {
+ "license": {
+ "id": "GD"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "d4d2379d9a61d03fd9458bc13ccb2ff67096c364a780d1dbf342585f0ddb411f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/gd/libgd"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "d4d2379d9a61d03fd9458bc13ccb2ff67096c364a780d1dbf342585f0ddb411f"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libmagic@5.46",
+ "name": "libmagic",
+ "version": "5.46",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libmagic@5.46",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-2-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "7924d405b2f9ef3c1ff2b28a4e4d40042de73e668ceae479086d37330891d0d6"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/fileinfo/libmagic"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "7924d405b2f9ef3c1ff2b28a4e4d40042de73e668ceae479086d37330891d0d6"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libmbfl@1.3.2",
+ "name": "libmbfl",
+ "version": "1.3.2",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libmbfl@1.3.2",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-only"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "ce20ebaad689bfc0dabfb1ad9dec9bfbea30b299430465566db997084a939a2a"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/mbstring/libmbfl"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "ce20ebaad689bfc0dabfb1ad9dec9bfbea30b299430465566db997084a939a2a"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libzip-zip-dirent",
+ "name": "libzip zip_dirent",
+ "version": "snapshot-79aa92b5cca9",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/libzip-zip-dirent",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "79aa92b5cca9f1bf4eedad9f72925b580707449a6d4e422db0c87e020f9222dc"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/phar/zip.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "79aa92b5cca9f1bf4eedad9f72925b580707449a6d4e422db0c87e020f9222dc"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/mtrand@1.0",
+ "name": "MTRand",
+ "version": "1.0",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/mtrand@1.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "e789018f1e172ec356910fb66d9d50f13b780e05920e12d510395beaf96196ac"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/random/engine_mt19937.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "e789018f1e172ec356910fb66d9d50f13b780e05920e12d510395beaf96196ac"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/openldap-ucgendat",
+ "name": "OpenLDAP ucgendat",
+ "version": "snapshot-572651bf88b0",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/openldap-ucgendat",
+ "licenses": [
+ {
+ "expression": "OLDAP-2.8 AND MIT"
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "572651bf88b0d2a10f16ff41191ecb385a37e6102a12117597bc7523e0bad968"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/mbstring/ucgendat/ucgendat.php"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "572651bf88b0d2a10f16ff41191ecb385a37e6102a12117597bc7523e0bad968"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/pcre2@10.44",
+ "name": "pcre2lib",
+ "version": "10.44",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/pcre2@10.44",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause WITH PCRE2-exception"
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "707a215120b9b27c3f80c75557b88de1890ea9e16212324fa87ddcede3e53d95"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/pcre/pcre2lib"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "707a215120b9b27c3f80c75557b88de1890ea9e16212324fa87ddcede3e53d95"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/snprintf",
+ "name": "snprintf",
+ "version": "snapshot-42618fe2e789",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/snprintf",
+ "licenses": [
+ {
+ "expression": "ISC AND Apache-1.0"
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "42618fe2e789fed999fc4d6b832991db42d45314240fe6d7da72f66867623ff6"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "main/snprintf.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "42618fe2e789fed999fc4d6b832991db42d45314240fe6d7da72f66867623ff6"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/strlcat",
+ "name": "strlcat",
+ "version": "snapshot-d2244e6a54fe",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/strlcat",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "d2244e6a54fead4265249866946ac7fb5050676fefe683110dbb965ea9a6dce8"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "main/strlcat.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "d2244e6a54fead4265249866946ac7fb5050676fefe683110dbb965ea9a6dce8"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/strlcpy",
+ "name": "strlcpy",
+ "version": "snapshot-144d697952d1",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/strlcpy",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "144d697952d109c4876660691033dcbe12b9c6124732199c56f31a02422884a6"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "main/strlcpy.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "144d697952d109c4876660691033dcbe12b9c6124732199c56f31a02422884a6"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/strnatcmp",
+ "name": "strnatcmp",
+ "version": "snapshot-e14f21965b39",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/strnatcmp",
+ "licenses": [
+ {
+ "license": {
+ "id": "Zlib"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "e14f21965b3924bc2231a1f638f990e1b2497b0e4fd51ec50f822837bed9bf68"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/standard/strnatcmp.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "e14f21965b3924bc2231a1f638f990e1b2497b0e4fd51ec50f822837bed9bf68"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/tcl-scanf@8.3.0",
+ "name": "Tcl scanf implementation",
+ "version": "8.3.0",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/tcl-scanf@8.3.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "TCL"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "b8fc92fa954fdb70a31307312c5c50335d37fa2c35ff30560e7590010ffe36e1"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/standard/scanf.c"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "b8fc92fa954fdb70a31307312c5c50335d37fa2c35ff30560e7590010ffe36e1"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "file-content-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/timelib@2022.17",
+ "name": "timelib",
+ "version": "2022.17",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/timelib@2022.17",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "2210ee5ba51e09e82e37c7703f661704c412ca918612c9fcb44650dc4e2a873e"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/date/lib"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "2210ee5ba51e09e82e37c7703f661704c412ca918612c9fcb44650dc4e2a873e"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/xkcp-sha3",
+ "name": "XKCP SHA-3",
+ "version": "snapshot-aba3170bb6e1",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/xkcp-sha3",
+ "licenses": [
+ {
+ "expression": "CC0-1.0 AND Brian-Gladman-3-Clause"
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "aba3170bb6e15ba1bddf0d346e580d3f96c954ac252fe05f888c038cdcda735a"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/hash/sha3"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "aba3170bb6e15ba1bddf0d346e580d3f96c954ac252fe05f888c038cdcda735a"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/xxhash@0.8.1",
+ "name": "xxHash",
+ "version": "0.8.1",
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PHP Group"
+ },
+ "purl": "pkg:generic/xxhash@0.8.1",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-2-Clause"
+ }
+ }
+ ],
+ "hashes": [
+ {
+ "alg": "SHA-256",
+ "content": "758cc817eb2636dde0c0213b8df1f7e1ba60a4adb3f07b4a62c89223d3f5207d"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "bundled"
+ },
+ {
+ "name": "php:source-artifact",
+ "value": "php-8.5.10 source tree"
+ },
+ {
+ "name": "php:source-path",
+ "value": "ext/hash/xxhash"
+ },
+ {
+ "name": "php:source-digest-algorithm",
+ "value": "SHA-256"
+ },
+ {
+ "name": "php:source-digest",
+ "value": "758cc817eb2636dde0c0213b8df1f7e1ba60a4adb3f07b4a62c89223d3f5207d"
+ },
+ {
+ "name": "php:source-digest-format",
+ "value": "relative-path-and-file-sha256-v1"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/ICU@77.1-1",
+ "name": "ICU",
+ "version": "77.1-1",
+ "purl": "pkg:generic/icu@77.1",
+ "licenses": [
+ {
+ "license": {
+ "id": "Unicode-DFS-2016"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/ICU-77.1-1-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/unicode-org/icu"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/unicode-org/icu/tree/release-77-1"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/icu4c.git@11bca20cc331c2ad3d38e240e5921ebfad8fe523"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "icu4c"
+ },
+ {
+ "name": "php:component",
+ "value": "ICU"
+ },
+ {
+ "name": "php:version",
+ "value": "77.1-1"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "77.1"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "unicode-org/icu"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/unicode-org/icu"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "release-77-1"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/icu4c"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/icu4c"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "icu4c-77.1-1"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "11bca20cc331c2ad3d38e240e5921ebfad8fe523"
+ },
+ {
+ "name": "php:input-version",
+ "value": "icu4c-77.1-1"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "ICU-77.1-1-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/ICU-77.1-1-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:ICU:77.1",
+ "name": "ICU",
+ "version": "77.1",
+ "purl": "pkg:generic/icu@77.1"
+ }
+ ],
+ "notes": "Built from winlibs/icu4c ref icu4c-77.1-1 at commit 11bca20cc331c2ad3d38e240e5921ebfad8fe523 with upstream identity unicode-org/icu tag release-77-1."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/apache@2.4.68",
+ "name": "apache",
+ "version": "2.4.68",
+ "purl": "pkg:generic/apache-httpd@2.4.68",
+ "licenses": [
+ {
+ "license": {
+ "id": "Apache-2.0"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/apache-2.4.68-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/apache/httpd"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/apache/httpd/tree/2.4.68"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/apache/httpd.git@736bb657405eb73fd68a64772c3a908807bdb887"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "apache"
+ },
+ {
+ "name": "php:component",
+ "value": "apache"
+ },
+ {
+ "name": "php:version",
+ "value": "2.4.68"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.4.68"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "upstream"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "apache/httpd"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/apache/httpd"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "2.4.68"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "apache/httpd"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/apache/httpd"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "2.4.68"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "736bb657405eb73fd68a64772c3a908807bdb887"
+ },
+ {
+ "name": "php:input-version",
+ "value": "2.4.68"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "apache-2.4.68-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/apache-2.4.68-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:apache:http_server:2.4.68:*:*:*:*:*:*:*"
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/jansson-x64-windows@678d7ad3250826f28d4b77b4c2ef87cb6b02d5dfb8d29c14eeac3f5cf5a1ced4",
+ "name": "jansson:x64-windows",
+ "version": "678d7ad3250826f28d4b77b4c2ef87cb6b02d5dfb8d29c14eeac3f5cf5a1ced4",
+ "licenses": [
+ {
+ "expression": "MIT AND dtoa"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/zlib",
+ "name": "zlib",
+ "version": "1.3.2#1",
+ "purl": "pkg:github/microsoft/vcpkg#ports/zlib",
+ "licenses": [
+ {
+ "expression": "Zlib"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/apr-x64-windows@03919ccf3f69b15eba8f04368099f5d3dc5c23ed3526015ec9137984d41c4fad",
+ "name": "apr:x64-windows",
+ "version": "03919ccf3f69b15eba8f04368099f5d3dc5c23ed3526015ec9137984d41c4fad",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/madler-zlib@1.3.2",
+ "name": "madler/zlib",
+ "version": "1.3.2",
+ "licenses": [
+ {
+ "expression": "Zlib"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "madler"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/nghttp2-x64-windows@1ea9da733d3d49024dff92b30043ee27dba59373816942b3d8c986b8a5edb676",
+ "name": "nghttp2:x64-windows",
+ "version": "1ea9da733d3d49024dff92b30043ee27dba59373816942b3d8c986b8a5edb676",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/apr",
+ "name": "apr",
+ "version": "1.7.6#1",
+ "purl": "pkg:github/microsoft/vcpkg#ports/apr",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/nghttp2",
+ "name": "nghttp2",
+ "version": "1.69.0",
+ "purl": "pkg:github/microsoft/vcpkg#ports/nghttp2",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/brotli-x64-windows@45a3ef2859dd01b67fd278f7750b1e843fcc4554fd5350940963f48da31a7426",
+ "name": "brotli:x64-windows",
+ "version": "45a3ef2859dd01b67fd278f7750b1e843fcc4554fd5350940963f48da31a7426",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/lua-x64-windows@e8f14584d48e1c2107547c9f22b9a9eccf73691b4aa033d797703ff440500676",
+ "name": "lua:x64-windows",
+ "version": "e8f14584d48e1c2107547c9f22b9a9eccf73691b4aa033d797703ff440500676",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/PCRE2Project-pcre2@10.47",
+ "name": "PCRE2Project/pcre2",
+ "version": "10.47",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "PCRE2Project"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/jansson",
+ "name": "jansson",
+ "version": "2.15.1",
+ "purl": "pkg:github/microsoft/vcpkg#ports/jansson",
+ "licenses": [
+ {
+ "expression": "MIT AND dtoa"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/libexpat-libexpat@2.8.2",
+ "name": "libexpat/libexpat",
+ "version": "2.8.2",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "libexpat"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/lua-5.5.0.tar.gz@5.5.0",
+ "name": "lua-5.5.0.tar.gz",
+ "version": "5.5.0",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Lua.org"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/zherczeg-sljit@45f910b78c6605ebf5b53d3ec7cb00f2312fe417",
+ "name": "zherczeg/sljit",
+ "version": "45f910b78c6605ebf5b53d3ec7cb00f2312fe417",
+ "licenses": [
+ {
+ "expression": "BSD-2-Clause"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Zoltan Herczeg"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/curl-x64-windows@ea772160a9dd49cf8c0365727979d54a2593b7e9b057572af2174857bd60016e",
+ "name": "curl:x64-windows",
+ "version": "ea772160a9dd49cf8c0365727979d54a2593b7e9b057572af2174857bd60016e",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause AND ISC AND curl"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/expat",
+ "name": "expat",
+ "version": "2.8.2",
+ "purl": "pkg:github/microsoft/vcpkg#ports/expat",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/akheron-jansson@2.15.1",
+ "name": "akheron/jansson",
+ "version": "2.15.1",
+ "licenses": [
+ {
+ "expression": "MIT AND dtoa"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "akheron"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/openssl",
+ "name": "openssl",
+ "version": "3.6.3",
+ "purl": "pkg:github/microsoft/vcpkg#ports/openssl",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/apr-util",
+ "name": "apr-util",
+ "version": "1.6.3",
+ "purl": "pkg:github/microsoft/vcpkg#ports/apr-util",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/apr-iconv@1.2.2",
+ "name": "apr-iconv",
+ "version": "1.2.2",
+ "purl": "pkg:generic/apr-iconv@1.2.2",
+ "licenses": [
+ {
+ "license": {
+ "id": "Apache-2.0"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "website",
+ "url": "https://github.com/apache/apr-iconv"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/apache/apr-iconv/tree/1.2.2"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "embedded"
+ },
+ {
+ "name": "php:source-path",
+ "value": "apr-iconv-source/apr-iconv-1.2.2"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "apache/apr-iconv"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/apache/apr-iconv"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "1.2.2"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/brotli",
+ "name": "brotli",
+ "version": "1.2.0",
+ "purl": "pkg:github/microsoft/vcpkg#ports/brotli",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/curl",
+ "name": "curl",
+ "version": "8.21.0#1",
+ "purl": "pkg:github/microsoft/vcpkg#ports/curl",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause AND ISC AND curl"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/nghttp2-nghttp2@1.69.0",
+ "name": "nghttp2/nghttp2",
+ "version": "1.69.0",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "nghttp2"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/openssl-x64-windows@8ebeacc935df08d9d1c210b16ef5af918196229f49850b57a60b800802600677",
+ "name": "openssl:x64-windows",
+ "version": "8ebeacc935df08d9d1c210b16ef5af918196229f49850b57a60b800802600677",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/pcre2-x64-windows@1b0a3280c093bfad0beafbc16e9be01ee86d1064a85163ebb3afc7b0a5339ddc",
+ "name": "pcre2:x64-windows",
+ "version": "1b0a3280c093bfad0beafbc16e9be01ee86d1064a85163ebb3afc7b0a5339ddc",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/lua",
+ "name": "lua",
+ "version": "5.5.0#1",
+ "purl": "pkg:github/microsoft/vcpkg#ports/lua",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/apr-1.7.6.tar.bz2@1.7.6",
+ "name": "apr-1.7.6.tar.bz2",
+ "version": "1.7.6",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Apache Software Foundation"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/zlib-x64-windows@5ae23b0077d1eaea33185c69c114d098231e93cc7d2c77a8123d625ddd85c44b",
+ "name": "zlib:x64-windows",
+ "version": "5ae23b0077d1eaea33185c69c114d098231e93cc7d2c77a8123d625ddd85c44b",
+ "licenses": [
+ {
+ "expression": "Zlib"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/google-brotli@1.2.0",
+ "name": "google/brotli",
+ "version": "1.2.0",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "google"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/curl-curl@8.21.0",
+ "name": "curl/curl",
+ "version": "8.21.0",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause AND ISC AND curl"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "curl"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/expat-x64-windows@c1722303603d771cc7dd274c0d811b2d1f3caf311b6117a74e9ef24bd7c7a1e6",
+ "name": "expat:x64-windows",
+ "version": "c1722303603d771cc7dd274c0d811b2d1f3caf311b6117a74e9ef24bd7c7a1e6",
+ "licenses": [
+ {
+ "expression": "MIT"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/openssl-openssl@3.6.3",
+ "name": "openssl/openssl",
+ "version": "3.6.3",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "openssl"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:github/microsoft/vcpkg#ports/pcre2",
+ "name": "pcre2",
+ "version": "10.47#1",
+ "purl": "pkg:github/microsoft/vcpkg#ports/pcre2",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Microsoft"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/apr-util-x64-windows@c0221bb1ebe3af251a9b9a69917701cf75f2bbfafabb4c88ee331dba0aad8dcd",
+ "name": "apr-util:x64-windows",
+ "version": "c0221bb1ebe3af251a9b9a69917701cf75f2bbfafabb4c88ee331dba0aad8dcd",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:generic/apr-util-1.6.3.tar.bz2@1.6.3",
+ "name": "apr-util-1.6.3.tar.bz2",
+ "version": "1.6.3",
+ "licenses": [
+ {
+ "expression": "Apache-2.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Apache Software Foundation"
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/brotli@1.2.0",
+ "name": "brotli",
+ "version": "1.2.0",
+ "purl": "pkg:generic/brotli@1.2.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/brotli-1.2.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/google/brotli"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/google/brotli/tree/v1.2.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/google/brotli.git@028fb5a23661f123017c060daa546b55cf4bde29"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "brotli"
+ },
+ {
+ "name": "php:component",
+ "value": "brotli"
+ },
+ {
+ "name": "php:version",
+ "value": "1.2.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.2.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "upstream"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "google/brotli"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/google/brotli"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.2.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "google/brotli"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/google/brotli"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "v1.2.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "028fb5a23661f123017c060daa546b55cf4bde29"
+ },
+ {
+ "name": "php:input-version",
+ "value": "v1.2.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "brotli-1.2.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/brotli-1.2.0-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:google:brotli:1.2.0:*:*:*:*:*:*:*"
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/fbclient@4.0.7",
+ "name": "fbclient",
+ "version": "4.0.7",
+ "purl": "pkg:generic/firebird@4.0.7",
+ "licenses": [
+ {
+ "expression": "Interbase-1.0 AND LicenseRef-fbclient-IDPL-1.0"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/fbclient-4.0.7-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/FirebirdSQL/firebird"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/FirebirdSQL/firebird/tree/v4.0.7"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "fbclient"
+ },
+ {
+ "name": "php:component",
+ "value": "fbclient"
+ },
+ {
+ "name": "php:version",
+ "value": "4.0.7"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "4.0.7"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "upstream"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "FirebirdSQL/firebird"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/FirebirdSQL/firebird"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v4.0.7"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "FirebirdSQL/firebird"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/FirebirdSQL/firebird"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "v4.0.7"
+ },
+ {
+ "name": "php:input-version",
+ "value": "v4.0.7"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "fbclient-4.0.7-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/fbclient-4.0.7-vs17-x64.zip"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/freetype@2.14.3",
+ "name": "freetype",
+ "version": "2.14.3",
+ "purl": "pkg:generic/freetype@2.14.3",
+ "licenses": [
+ {
+ "expression": "FTL OR GPL-2.0-or-later"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/freetype-2.14.3-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/freetype/freetype"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/freetype/freetype/tree/VER-2-14-3"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/freetype.git@3d8e776a1f1800dea07d433e20c91e8a9a161c4f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "freetype"
+ },
+ {
+ "name": "php:component",
+ "value": "freetype"
+ },
+ {
+ "name": "php:version",
+ "value": "2.14.3"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.14.3"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "freetype/freetype"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/freetype/freetype"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "VER-2-14-3"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/freetype"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/freetype"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "freetype-2.14.3"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "3d8e776a1f1800dea07d433e20c91e8a9a161c4f"
+ },
+ {
+ "name": "php:input-version",
+ "value": "freetype-2.14.3"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "freetype-2.14.3-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/freetype-2.14.3-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:freetype:freetype:2.14.3:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:freetype:2.14.3",
+ "name": "freetype",
+ "version": "2.14.3",
+ "purl": "pkg:generic/freetype@2.14.3"
+ }
+ ],
+ "notes": "Built from winlibs/freetype ref freetype-2.14.3 at commit 3d8e776a1f1800dea07d433e20c91e8a9a161c4f with upstream identity freetype/freetype tag VER-2-14-3."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/glib@2.88.3",
+ "name": "glib",
+ "version": "2.88.3",
+ "purl": "pkg:generic/glib@2.88.3",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-or-later"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/glib-2.88.3-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/GNOME/glib"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/GNOME/glib/tree/2.88.3"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/glib.git@ca9d6adf53e11099045a6d51116dd0b678faa1f3"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "glib"
+ },
+ {
+ "name": "php:component",
+ "value": "glib"
+ },
+ {
+ "name": "php:version",
+ "value": "2.88.3"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.88.3"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "GNOME/glib"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/GNOME/glib"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "2.88.3"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/glib"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/glib"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "glib-2.88.3"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "ca9d6adf53e11099045a6d51116dd0b678faa1f3"
+ },
+ {
+ "name": "php:input-version",
+ "value": "glib-2.88.3"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "glib-2.88.3-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/glib-2.88.3-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:gnome:glib:2.88.3:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:glib:2.88.3",
+ "name": "glib",
+ "version": "2.88.3",
+ "purl": "pkg:generic/glib@2.88.3"
+ }
+ ],
+ "notes": "Built from winlibs/glib ref glib-2.88.3 at commit ca9d6adf53e11099045a6d51116dd0b678faa1f3 with upstream identity GNOME/glib tag 2.88.3."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libffi@3.8.0",
+ "name": "libffi",
+ "version": "3.8.0",
+ "purl": "pkg:generic/libffi@3.8.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libffi-3.8.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/libffi/libffi"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/libffi/libffi/tree/v3.8.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libffi.git@30ae078e9dbf2cb36de5db54b9740e89d8ff52e1"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libffi"
+ },
+ {
+ "name": "php:component",
+ "value": "libffi"
+ },
+ {
+ "name": "php:version",
+ "value": "3.8.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.8.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "libffi/libffi"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/libffi/libffi"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v3.8.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libffi"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libffi"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libffi-3.8.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "30ae078e9dbf2cb36de5db54b9740e89d8ff52e1"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libffi-3.8.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libffi-3.8.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libffi-3.8.0-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libffi:3.8.0",
+ "name": "libffi",
+ "version": "3.8.0",
+ "purl": "pkg:generic/libffi@3.8.0"
+ }
+ ],
+ "notes": "Built from winlibs/libffi ref libffi-3.8.0 at commit 30ae078e9dbf2cb36de5db54b9740e89d8ff52e1 with upstream identity libffi/libffi tag v3.8.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libintl@1.0",
+ "name": "libintl",
+ "version": "1.0",
+ "purl": "pkg:generic/gettext@1.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-or-later"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libintl-1.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://git.savannah.gnu.org/git/gettext.git"
+ },
+ {
+ "type": "vcs",
+ "url": "https://git.savannah.gnu.org/git/gettext.git"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/gettext.git@cd6fcaeffc493305f9c0081310efa0e063060da6"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "gettext"
+ },
+ {
+ "name": "php:component",
+ "value": "libintl"
+ },
+ {
+ "name": "php:version",
+ "value": "1.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://git.savannah.gnu.org/git/gettext.git"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/gettext"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/gettext"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libintl-1.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "cd6fcaeffc493305f9c0081310efa0e063060da6"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libintl-1.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libintl-1.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libintl-1.0-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libintl:1.0",
+ "name": "libintl",
+ "version": "1.0",
+ "purl": "pkg:generic/gettext@1.0"
+ }
+ ],
+ "notes": "Built from winlibs/gettext ref libintl-1.0 at commit cd6fcaeffc493305f9c0081310efa0e063060da6 with upstream identity https://git.savannah.gnu.org/git/gettext.git tag v1.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/zlib@1.3.2",
+ "name": "zlib",
+ "version": "1.3.2",
+ "purl": "pkg:generic/zlib@1.3.2",
+ "licenses": [
+ {
+ "license": {
+ "id": "Zlib"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/zlib-1.3.2-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/madler/zlib"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/madler/zlib/tree/v1.3.2"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/zlib.git@0089522e62e6b5d4950e62bd20f0cb06a9288413"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "zlib"
+ },
+ {
+ "name": "php:component",
+ "value": "zlib"
+ },
+ {
+ "name": "php:version",
+ "value": "1.3.2"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.3.2"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "madler/zlib"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/madler/zlib"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.3.2"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/zlib"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/zlib"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "zlib-1.3.2"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "0089522e62e6b5d4950e62bd20f0cb06a9288413"
+ },
+ {
+ "name": "php:input-version",
+ "value": "zlib-1.3.2"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "zlib-1.3.2-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/zlib-1.3.2-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:zlib:zlib:1.3.2:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:zlib:1.3.2",
+ "name": "zlib",
+ "version": "1.3.2",
+ "purl": "pkg:generic/zlib@1.3.2"
+ }
+ ],
+ "notes": "Built from winlibs/zlib ref zlib-1.3.2 at commit 0089522e62e6b5d4950e62bd20f0cb06a9288413 with upstream identity madler/zlib tag v1.3.2."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libargon2@20190702",
+ "name": "libargon2",
+ "version": "20190702",
+ "purl": "pkg:generic/libargon2@20190702",
+ "licenses": [
+ {
+ "license": {
+ "id": "CC0-1.0"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libargon2-20190702-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/P-H-C/phc-winner-argon2"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/P-H-C/phc-winner-argon2/tree/20190702"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/argon2.git@fb53ef37be212380d51877b70f514f3bf2c1ee40"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "argon2"
+ },
+ {
+ "name": "php:component",
+ "value": "libargon2"
+ },
+ {
+ "name": "php:version",
+ "value": "20190702"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "20190702"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "P-H-C/phc-winner-argon2"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/P-H-C/phc-winner-argon2"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "20190702"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/argon2"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/argon2"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libargon2-20190702"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "fb53ef37be212380d51877b70f514f3bf2c1ee40"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libargon2-20190702"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libargon2-20190702-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libargon2-20190702-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libargon2:20190702",
+ "name": "libargon2",
+ "version": "20190702",
+ "purl": "pkg:generic/libargon2@20190702"
+ }
+ ],
+ "notes": "Built from winlibs/argon2 ref libargon2-20190702 at commit fb53ef37be212380d51877b70f514f3bf2c1ee40 with upstream identity P-H-C/phc-winner-argon2 tag 20190702."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libavif@1.4.2",
+ "name": "libavif",
+ "version": "1.4.2",
+ "purl": "pkg:generic/libavif@1.4.2",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-2-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libavif-1.4.2-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/AOMediaCodec/libavif"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/AOMediaCodec/libavif/tree/v1.4.2"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libavif.git@14976153789c7ebf2ca24b22215a964bbc5be213"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libavif"
+ },
+ {
+ "name": "php:component",
+ "value": "libavif"
+ },
+ {
+ "name": "php:version",
+ "value": "1.4.2"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.4.2"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "AOMediaCodec/libavif"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/AOMediaCodec/libavif"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.4.2"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libavif"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libavif"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libavif-1.4.2"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "14976153789c7ebf2ca24b22215a964bbc5be213"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libavif-1.4.2"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libavif-1.4.2-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libavif-1.4.2-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libavif:1.4.2",
+ "name": "libavif",
+ "version": "1.4.2",
+ "purl": "pkg:generic/libavif@1.4.2"
+ }
+ ],
+ "notes": "Built from winlibs/libavif ref libavif-1.4.2 at commit 14976153789c7ebf2ca24b22215a964bbc5be213 with upstream identity AOMediaCodec/libavif tag v1.4.2."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/aom@3.14.1",
+ "name": "aom",
+ "version": "3.14.1",
+ "purl": "pkg:generic/aom@3.14.1",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "website",
+ "url": "https://aomedia.googlesource.com/aom"
+ },
+ {
+ "type": "vcs",
+ "url": "https://aomedia.googlesource.com/aom/+/refs/tags/v3.14.1"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://aomedia.googlesource.com/aom.git@03087864cf4bea6abb0d28f95cf7843511413d8f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "embedded"
+ },
+ {
+ "name": "php:source-path",
+ "value": "libavif/ext/aom"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://aomedia.googlesource.com/aom"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v3.14.1"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://aomedia.googlesource.com/aom"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "v3.14.1"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "03087864cf4bea6abb0d28f95cf7843511413d8f"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libbzip2@1.0.8-1",
+ "name": "libbzip2",
+ "version": "1.0.8-1",
+ "purl": "pkg:generic/bzip2@1.0.8",
+ "licenses": [
+ {
+ "license": {
+ "id": "bzip2-1.0.6"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libbzip2-1.0.8-1-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/libarchive/bzip2"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/libarchive/bzip2/tree/bzip2-1.0.8"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libbzip2.git@99d3c4812e2b98bc305ae4b867f35346946717f0"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libbzip2"
+ },
+ {
+ "name": "php:component",
+ "value": "libbzip2"
+ },
+ {
+ "name": "php:version",
+ "value": "1.0.8-1"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.0.8"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "libarchive/bzip2"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/libarchive/bzip2"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "bzip2-1.0.8"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libbzip2"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libbzip2"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libbzip2-1.0.8-1"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "99d3c4812e2b98bc305ae4b867f35346946717f0"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libbzip2-1.0.8-1"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libbzip2-1.0.8-1-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libbzip2-1.0.8-1-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libbzip2:1.0.8",
+ "name": "libbzip2",
+ "version": "1.0.8",
+ "purl": "pkg:generic/bzip2@1.0.8"
+ }
+ ],
+ "notes": "Built from winlibs/libbzip2 ref libbzip2-1.0.8-1 at commit 99d3c4812e2b98bc305ae4b867f35346946717f0 with upstream identity libarchive/bzip2 tag bzip2-1.0.8."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libcurl@8.21.0-1",
+ "name": "libcurl",
+ "version": "8.21.0-1",
+ "purl": "pkg:generic/curl@8.21.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "curl"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libcurl-8.21.0-1-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/curl/curl"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/curl/curl/tree/curl-8_21_0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/curl.git@b49adb2e4efd37ca3f76e8a80d16c3e2c5efdab0"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "curl"
+ },
+ {
+ "name": "php:component",
+ "value": "libcurl"
+ },
+ {
+ "name": "php:version",
+ "value": "8.21.0-1"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "8.21.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "curl/curl"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/curl/curl"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "curl-8_21_0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/curl"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/curl"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libcurl-8.21.0-1"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "b49adb2e4efd37ca3f76e8a80d16c3e2c5efdab0"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libcurl-8.21.0-1"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.5"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libcurl-8.21.0-1-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libcurl-8.21.0-1-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:haxx:curl:8.21.0:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libcurl:8.21.0",
+ "name": "libcurl",
+ "version": "8.21.0",
+ "purl": "pkg:generic/curl@8.21.0"
+ }
+ ],
+ "notes": "Built from winlibs/curl ref libcurl-8.21.0-1 at commit b49adb2e4efd37ca3f76e8a80d16c3e2c5efdab0 with upstream identity curl/curl tag curl-8_21_0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "name": "libssh2",
+ "version": "1.11.1-7",
+ "purl": "pkg:generic/libssh2@1.11.1",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libssh2-1.11.1-7-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/libssh2/libssh2"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/libssh2/libssh2/tree/libssh2-1.11.1"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libssh2.git@7817741ff29d52165b0e8c157acbe4c0ec582117"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libssh2"
+ },
+ {
+ "name": "php:component",
+ "value": "libssh2"
+ },
+ {
+ "name": "php:version",
+ "value": "1.11.1-7"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.11.1"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "libssh2/libssh2"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/libssh2/libssh2"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "libssh2-1.11.1"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libssh2"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libssh2"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libssh2-1.11.1-7"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "7817741ff29d52165b0e8c157acbe4c0ec582117"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libssh2-1.11.1-7"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.5"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libssh2-1.11.1-7-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libssh2-1.11.1-7-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:libssh2:libssh2:1.11.1:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libssh2:1.11.1",
+ "name": "libssh2",
+ "version": "1.11.1",
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ ],
+ "notes": "Built from winlibs/libssh2 ref libssh2-1.11.1-7 at commit 7817741ff29d52165b0e8c157acbe4c0ec582117 with upstream identity libssh2/libssh2 tag libssh2-1.11.1.",
+ "patches": [
+ {
+ "type": "backport",
+ "resolves": [
+ {
+ "type": "security",
+ "id": "CVE-2026-7598",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-7598"
+ },
+ "description": "Fixed by backporting upstream username_len bounds checking in src/userauth.c.",
+ "references": [
+ "https://github.com/libssh2/libssh2/pull/1858",
+ "https://github.com/libssh2/libssh2/commit/256d04b60d80bf1190e96b0ad1e91b2174d744b1"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-15661",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-15661"
+ },
+ "description": "Fixed by backporting the upstream bounds-checked parsing for malformed SFTP symlink responses in src/sftp.c and the follow-up SSH_FXP_STATUS response handling fix.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/94726036b0d5abec38dfec6202270c5b4d0021dc",
+ "https://github.com/libssh2/libssh2/commit/2dae3024897e1898d389835151f4e9606227721d",
+ "https://github.com/libssh2/libssh2/commit/4ed26f5740bdd409269ed9fb48a28bf8f565b681"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-55199",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55199"
+ },
+ "description": "Fixed by backporting the upstream parse-failure handling for SSH_MSG_EXT_INFO extension name and value strings in src/packet.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/f6732df726b0e187f0ab6c4d538b7e5e5307439c",
+ "https://github.com/libssh2/libssh2/commit/17626857d20b3c9a1addfa45979dadcee1cd84a4"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-55200",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55200"
+ },
+ "description": "Fixed by backporting the upstream packet length upper-bound validation in src/transport.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/f2abc265e35792e3c86752c9f12682a1fb0d4a01",
+ "https://github.com/libssh2/libssh2/commit/97acf3dfda80c91c3a8c9f2372546301d4a1a7a8"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-58050",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58050"
+ },
+ "description": "Fixed by backporting the upstream bounds checking for public-key attribute counts in src/publickey.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/103972c538a11e5ae571f6126657e1baefccc415",
+ "https://github.com/libssh2/libssh2/commit/34497525929b9a47f03dfb81887ac896202b7e12"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-58051",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58051"
+ },
+ "description": "Fixed by backporting the upstream initialization of newly allocated public-key list entries in src/publickey.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/97e8f0143a55b66df60a695678433ccbe24291f0",
+ "https://github.com/libssh2/libssh2/commit/a9758da45a52bc8c630ec9493804d0c6ea30b24a"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-66032",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66032"
+ },
+ "description": "Fixed by backporting the upstream nullification of freed SFTP response data in src/sftp.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/47d1da2a772ac215ec0d29832e13073164e7084a",
+ "https://github.com/libssh2/libssh2/commit/5e4776146552d898b9c0e1b313cd093fa8dc92d0"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-66033",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66033"
+ },
+ "description": "Fixed by backporting the upstream runtime bounds checks for AES-GCM block processing in src/openssl.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/9f6cd27379c44b22918d848f1f81ca6f7bda19c5",
+ "https://github.com/libssh2/libssh2/commit/a2ed82d40964bbc0d64cd717aa0a5a892117d2e6"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-66034",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66034"
+ },
+ "description": "Fixed by backporting the upstream bounds checking for public-key comment lengths in src/publickey.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/407867a7365f61a0c5dba9fbfed0e30f2b0337d3",
+ "https://github.com/libssh2/libssh2/commit/a13bb6c773f0d55ad1628cede57e99803cd898d9"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-66035",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66035"
+ },
+ "description": "Fixed by backporting the upstream lower-bound validation for Encrypt-then-MAC packet decryption in src/transport.c.",
+ "references": [
+ "https://github.com/winlibs/libssh2/commit/7817741ff29d52165b0e8c157acbe4c0ec582117",
+ "https://github.com/libssh2/libssh2/commit/42e33d81577ed4b95d4b4f6f845e5ee8efe5eeb4"
+ ]
+ }
+ ]
+ }
+ ]
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libzstd@1.5.7",
+ "name": "libzstd",
+ "version": "1.5.7",
+ "purl": "pkg:generic/zstd@1.5.7",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause OR GPL-2.0-only"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libzstd-1.5.7-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/facebook/zstd"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/facebook/zstd/tree/v1.5.7"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/facebook/zstd.git@f8745da6ff1ad1e7bab384bd1f9d742439278e99"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libzstd"
+ },
+ {
+ "name": "php:component",
+ "value": "libzstd"
+ },
+ {
+ "name": "php:version",
+ "value": "1.5.7"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.5.7"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "upstream"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "facebook/zstd"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/facebook/zstd"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.5.7"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "facebook/zstd"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/facebook/zstd"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "v1.5.7"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "f8745da6ff1ad1e7bab384bd1f9d742439278e99"
+ },
+ {
+ "name": "php:input-version",
+ "value": "v1.5.7"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libzstd-1.5.7-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libzstd-1.5.7-vs17-x64.zip"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/nghttp2@1.70.0",
+ "name": "nghttp2",
+ "version": "1.70.0",
+ "purl": "pkg:generic/nghttp2@1.70.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/nghttp2-1.70.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/nghttp2/nghttp2"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/nghttp2/nghttp2/tree/v1.70.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/nghttp2.git@50895b5f3cebeb2553a4e40a62561707a1a129e0"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "nghttp2"
+ },
+ {
+ "name": "php:component",
+ "value": "nghttp2"
+ },
+ {
+ "name": "php:version",
+ "value": "1.70.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.70.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "nghttp2/nghttp2"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/nghttp2/nghttp2"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.70.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/nghttp2"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/nghttp2"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "nghttp2-1.70.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "50895b5f3cebeb2553a4e40a62561707a1a129e0"
+ },
+ {
+ "name": "php:input-version",
+ "value": "nghttp2-1.70.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "nghttp2-1.70.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/nghttp2-1.70.0-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:nghttp2:nghttp2:1.70.0:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:nghttp2:1.70.0",
+ "name": "nghttp2",
+ "version": "1.70.0",
+ "purl": "pkg:generic/nghttp2@1.70.0"
+ }
+ ],
+ "notes": "Built from winlibs/nghttp2 ref nghttp2-1.70.0 at commit 50895b5f3cebeb2553a4e40a62561707a1a129e0 with upstream identity nghttp2/nghttp2 tag v1.70.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/openssl@3.5.7",
+ "name": "openssl",
+ "version": "3.5.7",
+ "purl": "pkg:generic/openssl@3.5.7",
+ "licenses": [
+ {
+ "license": {
+ "id": "Apache-2.0"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openssl-3.5.7-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/openssl/openssl"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/openssl/openssl/tree/openssl-3.5.7"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/openssl.git@07444295ce1ca3175b58a18c9da732c14393161e"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "openssl"
+ },
+ {
+ "name": "php:component",
+ "value": "openssl"
+ },
+ {
+ "name": "php:version",
+ "value": "3.5.7"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.5.7"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "openssl/openssl"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/openssl/openssl"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "openssl-3.5.7"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/openssl"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/openssl"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "openssl-3.5.7"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "07444295ce1ca3175b58a18c9da732c14393161e"
+ },
+ {
+ "name": "php:input-version",
+ "value": "openssl-3.5.7"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.5"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "openssl-3.5.7-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openssl-3.5.7-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:openssl:openssl:3.5.7:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:openssl:3.5.7",
+ "name": "openssl",
+ "version": "3.5.7",
+ "purl": "pkg:generic/openssl@3.5.7"
+ }
+ ],
+ "notes": "Built from winlibs/openssl ref openssl-3.5.7 at commit 07444295ce1ca3175b58a18c9da732c14393161e with upstream identity openssl/openssl tag openssl-3.5.7."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libenchant2@2.8.19",
+ "name": "libenchant2",
+ "version": "2.8.19",
+ "purl": "pkg:generic/enchant@2.8.19",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-or-later"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libenchant2-2.8.19-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/AbiWord/enchant"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/AbiWord/enchant/tree/v2.8.19"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/enchant.git@37e09ab3d76d61784d8a9d4cca2badbd56d080f4"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "enchant"
+ },
+ {
+ "name": "php:component",
+ "value": "libenchant2"
+ },
+ {
+ "name": "php:version",
+ "value": "2.8.19"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.8.19"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "AbiWord/enchant"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/AbiWord/enchant"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v2.8.19"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/enchant"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/enchant"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libenchant2-2.8.19"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "37e09ab3d76d61784d8a9d4cca2badbd56d080f4"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libenchant2-2.8.19"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libenchant2-2.8.19-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libenchant2-2.8.19-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libenchant2:2.8.19",
+ "name": "libenchant2",
+ "version": "2.8.19",
+ "purl": "pkg:generic/enchant@2.8.19"
+ }
+ ],
+ "notes": "Built from winlibs/enchant ref libenchant2-2.8.19 at commit 37e09ab3d76d61784d8a9d4cca2badbd56d080f4 with upstream identity AbiWord/enchant tag v2.8.19."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libiconv@1.19",
+ "name": "libiconv",
+ "version": "1.19",
+ "purl": "pkg:generic/libiconv@1.19",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-or-later"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libiconv-1.19-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://git.savannah.gnu.org/git/libiconv.git"
+ },
+ {
+ "type": "vcs",
+ "url": "https://git.savannah.gnu.org/git/libiconv.git"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libiconv.git@8f55a0aa6532f30f947261d90e72b200f350a5df"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libiconv"
+ },
+ {
+ "name": "php:component",
+ "value": "libiconv"
+ },
+ {
+ "name": "php:version",
+ "value": "1.19"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.19"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://git.savannah.gnu.org/git/libiconv.git"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.19"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libiconv"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libiconv"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libiconv-1.19"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "8f55a0aa6532f30f947261d90e72b200f350a5df"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libiconv-1.19"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libiconv-1.19-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libiconv-1.19-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libiconv:1.19",
+ "name": "libiconv",
+ "version": "1.19",
+ "purl": "pkg:generic/libiconv@1.19"
+ }
+ ],
+ "notes": "Built from winlibs/libiconv ref libiconv-1.19 at commit 8f55a0aa6532f30f947261d90e72b200f350a5df with upstream identity https://git.savannah.gnu.org/git/libiconv.git tag v1.19."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libjpeg-turbo@3.2.0",
+ "name": "libjpeg-turbo",
+ "version": "3.2.0",
+ "purl": "pkg:generic/libjpeg-turbo@3.2.0",
+ "licenses": [
+ {
+ "expression": "BSD-3-Clause AND IJG"
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libjpeg-turbo-3.2.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/libjpeg-turbo/libjpeg-turbo"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/libjpeg-turbo/libjpeg-turbo/tree/3.2.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libjpeg.git@66ef88ad97f3c47eb1c7b85f2637ff1073ebce9b"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libjpeg"
+ },
+ {
+ "name": "php:component",
+ "value": "libjpeg-turbo"
+ },
+ {
+ "name": "php:version",
+ "value": "3.2.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.2.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "libjpeg-turbo/libjpeg-turbo"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/libjpeg-turbo/libjpeg-turbo"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "3.2.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libjpeg"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libjpeg"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libjpeg-turbo-3.2.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "66ef88ad97f3c47eb1c7b85f2637ff1073ebce9b"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libjpeg-turbo-3.2.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libjpeg-turbo-3.2.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libjpeg-turbo-3.2.0-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:libjpeg-turbo:libjpeg-turbo:3.2.0:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libjpeg-turbo:3.2.0",
+ "name": "libjpeg-turbo",
+ "version": "3.2.0",
+ "purl": "pkg:generic/libjpeg-turbo@3.2.0"
+ }
+ ],
+ "notes": "Built from winlibs/libjpeg ref libjpeg-turbo-3.2.0 at commit 66ef88ad97f3c47eb1c7b85f2637ff1073ebce9b with upstream identity libjpeg-turbo/libjpeg-turbo tag 3.2.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/liblmdb@0.9.35",
+ "name": "liblmdb",
+ "version": "0.9.35",
+ "purl": "pkg:generic/lmdb@0.9.35",
+ "licenses": [
+ {
+ "license": {
+ "id": "OLDAP-2.8"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/liblmdb-0.9.35-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/LMDB/lmdb"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/LMDB/lmdb/tree/LMDB_0.9.35"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/lmdb.git@337459047d55fbf52e634bc26285195d06ac145d"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "lmdb"
+ },
+ {
+ "name": "php:component",
+ "value": "liblmdb"
+ },
+ {
+ "name": "php:version",
+ "value": "0.9.35"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "0.9.35"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "LMDB/lmdb"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/LMDB/lmdb"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "LMDB_0.9.35"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/lmdb"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/lmdb"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "liblmdb-0.9.35"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "337459047d55fbf52e634bc26285195d06ac145d"
+ },
+ {
+ "name": "php:input-version",
+ "value": "liblmdb-0.9.35"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "liblmdb-0.9.35-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/liblmdb-0.9.35-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:liblmdb:0.9.35",
+ "name": "liblmdb",
+ "version": "0.9.35",
+ "purl": "pkg:generic/lmdb@0.9.35"
+ }
+ ],
+ "notes": "Built from winlibs/lmdb ref liblmdb-0.9.35 at commit 337459047d55fbf52e634bc26285195d06ac145d with upstream identity LMDB/lmdb tag LMDB_0.9.35."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/liblzma@5.8.3",
+ "name": "liblzma",
+ "version": "5.8.3",
+ "purl": "pkg:generic/xz@5.8.3",
+ "licenses": [
+ {
+ "license": {
+ "id": "0BSD"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/liblzma-5.8.3-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/tukaani-project/xz"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/tukaani-project/xz/tree/v5.8.3"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/liblzma.git@debf994b6385f384f01815eaac4597e3c2e2cc4e"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "liblzma"
+ },
+ {
+ "name": "php:component",
+ "value": "liblzma"
+ },
+ {
+ "name": "php:version",
+ "value": "5.8.3"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "5.8.3"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "tukaani-project/xz"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/tukaani-project/xz"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v5.8.3"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/liblzma"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/liblzma"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "liblzma-5.8.3"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "debf994b6385f384f01815eaac4597e3c2e2cc4e"
+ },
+ {
+ "name": "php:input-version",
+ "value": "liblzma-5.8.3"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "liblzma-5.8.3-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/liblzma-5.8.3-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:liblzma:5.8.3",
+ "name": "liblzma",
+ "version": "5.8.3",
+ "purl": "pkg:generic/xz@5.8.3"
+ }
+ ],
+ "notes": "Built from winlibs/liblzma ref liblzma-5.8.3 at commit debf994b6385f384f01815eaac4597e3c2e2cc4e with upstream identity tukaani-project/xz tag v5.8.3."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libonig@6.9.10",
+ "name": "libonig",
+ "version": "6.9.10",
+ "purl": "pkg:generic/oniguruma@6.9.10",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-2-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libonig-6.9.10-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/kkos/oniguruma"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/kkos/oniguruma/tree/v6.9.10"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/oniguruma.git@fceeeffdb609661ffaea9be4075c6ff4d6696611"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "oniguruma"
+ },
+ {
+ "name": "php:component",
+ "value": "libonig"
+ },
+ {
+ "name": "php:version",
+ "value": "6.9.10"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "6.9.10"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "kkos/oniguruma"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/kkos/oniguruma"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v6.9.10"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/oniguruma"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/oniguruma"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libonig-6.9.10"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "fceeeffdb609661ffaea9be4075c6ff4d6696611"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libonig-6.9.10"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libonig-6.9.10-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libonig-6.9.10-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libonig:6.9.10",
+ "name": "libonig",
+ "version": "6.9.10",
+ "purl": "pkg:generic/oniguruma@6.9.10"
+ }
+ ],
+ "notes": "Built from winlibs/oniguruma ref libonig-6.9.10 at commit fceeeffdb609661ffaea9be4075c6ff4d6696611 with upstream identity kkos/oniguruma tag v6.9.10."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libpng@1.6.58",
+ "name": "libpng",
+ "version": "1.6.58",
+ "purl": "pkg:generic/libpng@1.6.58",
+ "licenses": [
+ {
+ "license": {
+ "id": "libpng-2.0"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libpng-1.6.58-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/pnggroup/libpng"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/pnggroup/libpng/tree/v1.6.58"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libpng.git@5d1b8aa0f6a0f20d7962270ac5ebb64b5795a896"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libpng"
+ },
+ {
+ "name": "php:component",
+ "value": "libpng"
+ },
+ {
+ "name": "php:version",
+ "value": "1.6.58"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.6.58"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "pnggroup/libpng"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/pnggroup/libpng"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.6.58"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libpng"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libpng"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libpng-1.6.58"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "5d1b8aa0f6a0f20d7962270ac5ebb64b5795a896"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libpng-1.6.58"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libpng-1.6.58-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libpng-1.6.58-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:libpng:libpng:1.6.58:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libpng:1.6.58",
+ "name": "libpng",
+ "version": "1.6.58",
+ "purl": "pkg:generic/libpng@1.6.58"
+ }
+ ],
+ "notes": "Built from winlibs/libpng ref libpng-1.6.58 at commit 5d1b8aa0f6a0f20d7962270ac5ebb64b5795a896 with upstream identity pnggroup/libpng tag v1.6.58."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libpq@16.15",
+ "name": "libpq",
+ "version": "16.15",
+ "purl": "pkg:generic/postgresql@16.15",
+ "licenses": [
+ {
+ "license": {
+ "id": "PostgreSQL"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libpq-16.15-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/postgres/postgres"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/postgres/postgres/tree/REL_16_15"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/postgresql.git@5cb6f940a63def19804e2f8c954bf985e4e30724"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "postgresql"
+ },
+ {
+ "name": "php:component",
+ "value": "libpq"
+ },
+ {
+ "name": "php:version",
+ "value": "16.15"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "16.15"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "postgres/postgres"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/postgres/postgres"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "REL_16_15"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/postgresql"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/postgresql"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libpq-16.15"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "5cb6f940a63def19804e2f8c954bf985e4e30724"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libpq-16.15"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libpq-16.15-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libpq-16.15-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:postgresql:postgresql:16.15:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libpq:16.15",
+ "name": "libpq",
+ "version": "16.15",
+ "purl": "pkg:generic/postgresql@16.15"
+ }
+ ],
+ "notes": "Built from winlibs/postgresql ref libpq-16.15 at commit 5cb6f940a63def19804e2f8c954bf985e4e30724 with upstream identity postgres/postgres tag REL_16_15."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/openssl@3.0.21.pl1",
+ "name": "openssl",
+ "version": "3.0.21.pl1",
+ "purl": "pkg:generic/openssl@3.0.21",
+ "licenses": [
+ {
+ "license": {
+ "id": "Apache-2.0"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openssl-3.0.21.pl1-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/openssl/openssl"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/openssl/openssl/tree/openssl-3.0.21"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/openssl.git@76409f1973ddc85fa2f6838b2679b1b2ea1e0bb6"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "openssl"
+ },
+ {
+ "name": "php:component",
+ "value": "openssl"
+ },
+ {
+ "name": "php:version",
+ "value": "3.0.21.pl1"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.0.21"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "openssl/openssl"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/openssl/openssl"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "openssl-3.0.21"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/openssl"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/openssl"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "openssl-3.0.21.pl1"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "76409f1973ddc85fa2f6838b2679b1b2ea1e0bb6"
+ },
+ {
+ "name": "php:input-version",
+ "value": "openssl-3.0.21.pl1"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "openssl-3.0.21.pl1-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openssl-3.0.21.pl1-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:openssl:openssl:3.0.21:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:openssl:3.0.21",
+ "name": "openssl",
+ "version": "3.0.21",
+ "purl": "pkg:generic/openssl@3.0.21"
+ }
+ ],
+ "notes": "Built from winlibs/openssl ref openssl-3.0.21.pl1 at commit 76409f1973ddc85fa2f6838b2679b1b2ea1e0bb6 with upstream identity openssl/openssl tag openssl-3.0.21. Backport Ubuntu's PKCS#1 implicit-rejection patch.",
+ "patches": [
+ {
+ "type": "backport",
+ "diff": {
+ "url": "https://github.com/winlibs/openssl/commit/76409f1973ddc85fa2f6838b2679b1b2ea1e0bb6"
+ }
+ }
+ ]
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libqdbm@1.8.78",
+ "name": "libqdbm",
+ "version": "1.8.78",
+ "purl": "pkg:generic/qdbm@1.8.78",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-2.1-or-later"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libqdbm-1.8.78-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://dbmx.net/qdbm/"
+ },
+ {
+ "type": "vcs",
+ "url": "https://dbmx.net/qdbm/"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/qdbm.git@586aa477ff42f0d307dc26adada275642630b28f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "qdbm"
+ },
+ {
+ "name": "php:component",
+ "value": "libqdbm"
+ },
+ {
+ "name": "php:version",
+ "value": "1.8.78"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.8.78"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://dbmx.net/qdbm/"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "qdbm-1.8.78"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/qdbm"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/qdbm"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libqdbm-1.8.78"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "586aa477ff42f0d307dc26adada275642630b28f"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libqdbm-1.8.78"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libqdbm-1.8.78-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libqdbm-1.8.78-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libqdbm:1.8.78",
+ "name": "libqdbm",
+ "version": "1.8.78",
+ "purl": "pkg:generic/qdbm@1.8.78"
+ }
+ ],
+ "notes": "Built from winlibs/qdbm ref libqdbm-1.8.78 at commit 586aa477ff42f0d307dc26adada275642630b28f with upstream identity https://dbmx.net/qdbm/ tag qdbm-1.8.78."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libsasl@2.1.28",
+ "name": "libsasl",
+ "version": "2.1.28",
+ "purl": "pkg:generic/cyrus-sasl@2.1.28",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-4-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libsasl-2.1.28-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/cyrusimap/cyrus-sasl"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/cyrusimap/cyrus-sasl/tree/cyrus-sasl-2.1.28"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/cyrus-sasl.git@63a75ce9293206aea981e9f3edcd96645bafd677"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "cyrus-sasl"
+ },
+ {
+ "name": "php:component",
+ "value": "libsasl"
+ },
+ {
+ "name": "php:version",
+ "value": "2.1.28"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.1.28"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "cyrusimap/cyrus-sasl"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/cyrusimap/cyrus-sasl"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "cyrus-sasl-2.1.28"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/cyrus-sasl"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/cyrus-sasl"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libsasl-2.1.28"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "63a75ce9293206aea981e9f3edcd96645bafd677"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libsasl-2.1.28"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libsasl-2.1.28-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libsasl-2.1.28-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libsasl:2.1.28",
+ "name": "libsasl",
+ "version": "2.1.28",
+ "purl": "pkg:generic/cyrus-sasl@2.1.28"
+ }
+ ],
+ "notes": "Built from winlibs/cyrus-sasl ref libsasl-2.1.28 at commit 63a75ce9293206aea981e9f3edcd96645bafd677 with upstream identity cyrusimap/cyrus-sasl tag cyrus-sasl-2.1.28."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/sqlite3@3.53.2",
+ "name": "sqlite3",
+ "version": "3.53.2",
+ "purl": "pkg:generic/sqlite@3.53.2",
+ "licenses": [
+ {
+ "license": {
+ "id": "blessing"
+ }
+ }
+ ],
+ "copyright": "NONE",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/sqlite3-3.53.2-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/sqlite/sqlite"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/sqlite/sqlite/tree/version-3.53.2"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/sqlite3.git@1317473784d608cfe3193628ccbe27ed2dedc3fe"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "sqlite3"
+ },
+ {
+ "name": "php:component",
+ "value": "sqlite3"
+ },
+ {
+ "name": "php:version",
+ "value": "3.53.2"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.53.2"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "sqlite/sqlite"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/sqlite/sqlite"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "version-3.53.2"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/sqlite3"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/sqlite3"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "sqlite3-3.53.2"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "1317473784d608cfe3193628ccbe27ed2dedc3fe"
+ },
+ {
+ "name": "php:input-version",
+ "value": "sqlite3-3.53.2"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "sqlite3-3.53.2-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/sqlite3-3.53.2-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:sqlite:sqlite:3.53.2:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:sqlite3:3.53.2",
+ "name": "sqlite3",
+ "version": "3.53.2",
+ "purl": "pkg:generic/sqlite@3.53.2"
+ }
+ ],
+ "notes": "Built from winlibs/sqlite3 ref sqlite3-3.53.2 at commit 1317473784d608cfe3193628ccbe27ed2dedc3fe with upstream identity sqlite/sqlite tag version-3.53.2."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libsodium@1.0.22",
+ "name": "libsodium",
+ "version": "1.0.22",
+ "purl": "pkg:generic/libsodium@1.0.22",
+ "licenses": [
+ {
+ "license": {
+ "id": "ISC"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libsodium-1.0.22-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/jedisct1/libsodium"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/jedisct1/libsodium/tree/1.0.22-RELEASE"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libsodium.git@1777bbc853d2aeb124e7b842a11b916193db7bdf"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libsodium"
+ },
+ {
+ "name": "php:component",
+ "value": "libsodium"
+ },
+ {
+ "name": "php:version",
+ "value": "1.0.22"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.0.22"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "jedisct1/libsodium"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/jedisct1/libsodium"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "1.0.22-RELEASE"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libsodium"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libsodium"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libsodium-1.0.22"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "1777bbc853d2aeb124e7b842a11b916193db7bdf"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libsodium-1.0.22"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libsodium-1.0.22-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libsodium-1.0.22-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libsodium:1.0.22",
+ "name": "libsodium",
+ "version": "1.0.22",
+ "purl": "pkg:generic/libsodium@1.0.22"
+ }
+ ],
+ "notes": "Built from winlibs/libsodium ref libsodium-1.0.22 at commit 1777bbc853d2aeb124e7b842a11b916193db7bdf with upstream identity jedisct1/libsodium tag 1.0.22-RELEASE."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libtidy@5.8.0",
+ "name": "libtidy",
+ "version": "5.8.0",
+ "purl": "pkg:generic/libtidy@5.8.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "Zlib"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libtidy-5.8.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/htacg/tidy-html5"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/htacg/tidy-html5/tree/5.8.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libtidy.git@8b6229fd70409656257a6446a254fd62fde8a03a"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libtidy"
+ },
+ {
+ "name": "php:component",
+ "value": "libtidy"
+ },
+ {
+ "name": "php:version",
+ "value": "5.8.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "5.8.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "htacg/tidy-html5"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/htacg/tidy-html5"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "5.8.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libtidy"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libtidy"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libtidy-5.8.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "8b6229fd70409656257a6446a254fd62fde8a03a"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libtidy-5.8.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libtidy-5.8.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libtidy-5.8.0-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libtidy:5.8.0",
+ "name": "libtidy",
+ "version": "5.8.0",
+ "purl": "pkg:generic/libtidy@5.8.0"
+ }
+ ],
+ "notes": "Built from winlibs/libtidy ref libtidy-5.8.0 at commit 8b6229fd70409656257a6446a254fd62fde8a03a with upstream identity htacg/tidy-html5 tag 5.8.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libwebp@1.6.0",
+ "name": "libwebp",
+ "version": "1.6.0",
+ "purl": "pkg:generic/libwebp@1.6.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libwebp-1.6.0-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/webmproject/libwebp"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/webmproject/libwebp/tree/v1.6.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libwebp.git@1b7801dd9a59c1dc5bda38895d8f94c815732a9f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libwebp"
+ },
+ {
+ "name": "php:component",
+ "value": "libwebp"
+ },
+ {
+ "name": "php:version",
+ "value": "1.6.0"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.6.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "webmproject/libwebp"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/webmproject/libwebp"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.6.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libwebp"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libwebp"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libwebp-1.6.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "1b7801dd9a59c1dc5bda38895d8f94c815732a9f"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libwebp-1.6.0"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libwebp-1.6.0-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libwebp-1.6.0-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libwebp:1.6.0",
+ "name": "libwebp",
+ "version": "1.6.0",
+ "purl": "pkg:generic/libwebp@1.6.0"
+ }
+ ],
+ "notes": "Built from winlibs/libwebp ref libwebp-1.6.0 at commit 1b7801dd9a59c1dc5bda38895d8f94c815732a9f with upstream identity webmproject/libwebp tag v1.6.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "name": "libxml2",
+ "version": "2.11.9-7",
+ "purl": "pkg:generic/libxml2@2.11.9",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxml2-2.11.9-7-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/GNOME/libxml2"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/GNOME/libxml2/tree/v2.11.9"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libxml2.git@f06d784607050c08a9b28b1fce2faa4236c052cf"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libxml2"
+ },
+ {
+ "name": "php:component",
+ "value": "libxml2"
+ },
+ {
+ "name": "php:version",
+ "value": "2.11.9-7"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.11.9"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "GNOME/libxml2"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/GNOME/libxml2"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v2.11.9"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libxml2"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libxml2"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libxml2-2.11.9-7"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "f06d784607050c08a9b28b1fce2faa4236c052cf"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libxml2-2.11.9-7"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libxml2-2.11.9-7-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxml2-2.11.9-7-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:xmlsoft:libxml2:2.11.9:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libxml2:2.11.9",
+ "name": "libxml2",
+ "version": "2.11.9",
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ ],
+ "notes": "Built from winlibs/libxml2 ref libxml2-2.11.9-7 at commit f06d784607050c08a9b28b1fce2faa4236c052cf with upstream identity GNOME/libxml2 tag v2.11.9.",
+ "patches": [
+ {
+ "type": "backport",
+ "resolves": [
+ {
+ "type": "security",
+ "id": "CVE-2024-56171",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-56171"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/3e2239c54bcc20495bd9dc35f80d3402179b6809"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-24928",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24928"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/f4646b65a167bcdf3f18246772b12415172545a8"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-27113",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27113"
+ },
+ "description": "Fixed by winlibs/libxml2 backport in tag libxml2-2.11.9-1."
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-32414",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32414"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/220875f30a741ee7a4dbd3aa4cfa1e4569573ea9"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-32415",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32415"
+ },
+ "description": "Fixed by the xmlSchemaIDCFillNodeTables heap buffer overflow backport in winlibs/libxml2 tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/bcaa5c4af33b2648371b1fff3059bf0c51abe6bd"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-49794",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49794"
+ },
+ "description": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/781345c83817681e35f201892d3befc6b63d6129"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-49795",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49795"
+ },
+ "description": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/21afa4ccaf8fcf64f03fc0e8fd0c65ef9770c902"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-49796",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49796"
+ },
+ "description": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/781345c83817681e35f201892d3befc6b63d6129"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-6021",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6021"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/1aaac89c3c076a72c61263e279be47ee9e016a09"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-6170",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6170"
+ },
+ "description": "Fixed by the debugXML interactive shell buffer overflow backport in winlibs/libxml2 tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/f7f4f1cdc447df9b0d4621ebb84fb2c690cecef4"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-7425",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7425"
+ },
+ "description": "Fixed by preserving libxslt private flag bits in winlibs/libxml2 tag libxml2-2.11.9-7.",
+ "references": [
+ "https://gitlab.gnome.org/GNOME/libxslt/-/issues/140",
+ "https://gitlab.gnome.org/GNOME/libxml2/-/commit/f1e1f13b766eb580a8dcc0c4e7a447346dfd862e"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-8732",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8732"
+ },
+ "description": "Fixed by SGML catalog recursion limit backport in winlibs/libxml2 tag libxml2-2.11.9-5.",
+ "references": [
+ "https://gitlab.gnome.org/GNOME/libxml2/-/commit/eae9291aa73907694dd3a4274d306e31217e746e"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-0989",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0989"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/561fa6aa2df56372746029e027125634008c6f2e"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-0990",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0990"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/d26c645cd83ae7c8d1439a696a54730af7630ff4"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-0992",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0992"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport and compatibility follow-up in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/850597a70a2ff93de74b0be9e378f6bb4f11ade6",
+ "https://github.com/winlibs/libxml2/commit/04c5570aa73c0c1938ee9e256dbda7649dd7c479"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-1757",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1757"
+ },
+ "description": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/ca4540f6dcc6cb583c0835dbd5ce4dd76d1d8741"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2023-45322",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-45322"
+ },
+ "description": "Fixed by backporting the upstream DTD-copy use-after-free fix in xmlStaticCopyNodeList and its regression follow-up in winlibs/libxml2 tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/8af91ce979a7478c852a67a450774b0b3d374308",
+ "https://github.com/winlibs/libxml2/commit/f06d784607050c08a9b28b1fce2faa4236c052cf",
+ "https://gitlab.gnome.org/GNOME/libxml2/-/commit/d39f78069dff496ec865c73aa44d7110e429bce9",
+ "https://gitlab.gnome.org/GNOME/libxml2/-/commit/8707838e69f9c6e729c1d1d46bb3681d9e622be5"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2026-11979",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-11979"
+ },
+ "description": "Fixed by backporting the upstream bounds checks for xmlcatalog --shell command and argument parsing in winlibs/libxml2 tag libxml2-2.11.9-7.",
+ "references": [
+ "https://github.com/winlibs/libxml2/commit/8abcf2bca49fe3ad8618d356536dc7b0cb3b3225",
+ "https://gitlab.gnome.org/GNOME/libxml2/-/commit/c2e233fc1b341685fc99621b2768b503f777a72e"
+ ]
+ }
+ ]
+ }
+ ]
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libxpm@3.5.19",
+ "name": "libxpm",
+ "version": "3.5.19",
+ "purl": "pkg:generic/libxpm@3.5.19",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxpm-3.5.19-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://gitlab.freedesktop.org/xorg/lib/libxpm"
+ },
+ {
+ "type": "vcs",
+ "url": "https://gitlab.freedesktop.org/xorg/lib/libxpm/-/tree/libXpm-3.5.19"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libxpm.git@90f573b4ae2aed9bda5dbb6df3b9d86f1bec9099"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libxpm"
+ },
+ {
+ "name": "php:component",
+ "value": "libxpm"
+ },
+ {
+ "name": "php:version",
+ "value": "3.5.19"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.5.19"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://gitlab.freedesktop.org/xorg/lib/libxpm"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "libXpm-3.5.19"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libxpm"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libxpm"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libxpm-3.5.19"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "90f573b4ae2aed9bda5dbb6df3b9d86f1bec9099"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libxpm-3.5.19"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libxpm-3.5.19-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxpm-3.5.19-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libxpm:3.5.19",
+ "name": "libxpm",
+ "version": "3.5.19",
+ "purl": "pkg:generic/libxpm@3.5.19"
+ }
+ ],
+ "notes": "Built from winlibs/libxpm ref libxpm-3.5.19 at commit 90f573b4ae2aed9bda5dbb6df3b9d86f1bec9099 with upstream identity https://gitlab.freedesktop.org/xorg/lib/libxpm tag libXpm-3.5.19."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "name": "libxslt",
+ "version": "1.1.43-2",
+ "purl": "pkg:generic/libxslt@1.1.43",
+ "licenses": [
+ {
+ "license": {
+ "id": "MIT"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxslt-1.1.43-2-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/GNOME/libxslt"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/GNOME/libxslt/tree/v1.1.43"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libxslt.git@9f399f8d223ddddeaeacd15285a2e993ec326c0f"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libxslt"
+ },
+ {
+ "name": "php:component",
+ "value": "libxslt"
+ },
+ {
+ "name": "php:version",
+ "value": "1.1.43-2"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.1.43"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "GNOME/libxslt"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/GNOME/libxslt"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.1.43"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libxslt"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libxslt"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libxslt-1.1.43-2"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "9f399f8d223ddddeaeacd15285a2e993ec326c0f"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libxslt-1.1.43-2"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libxslt-1.1.43-2-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxslt-1.1.43-2-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:xmlsoft:libxslt:1.1.43:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libxslt:1.1.43",
+ "name": "libxslt",
+ "version": "1.1.43",
+ "purl": "pkg:generic/libxslt@1.1.43"
+ }
+ ],
+ "notes": "Built from winlibs/libxslt ref libxslt-1.1.43-2 at commit 9f399f8d223ddddeaeacd15285a2e993ec326c0f with upstream identity GNOME/libxslt tag v1.1.43.",
+ "patches": [
+ {
+ "type": "backport",
+ "resolves": [
+ {
+ "type": "security",
+ "id": "CVE-2025-10911",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10911"
+ },
+ "description": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2.",
+ "references": [
+ "https://github.com/winlibs/libxslt/commit/9f399f8d223ddddeaeacd15285a2e993ec326c0f"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-11731",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-11731"
+ },
+ "description": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2.",
+ "references": [
+ "https://github.com/winlibs/libxslt/commit/7b6b3c1b3abc2d4c4332496d44979b8a1933dd1b"
+ ]
+ },
+ {
+ "type": "security",
+ "id": "CVE-2025-7424",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7424"
+ },
+ "description": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2.",
+ "references": [
+ "https://github.com/winlibs/libxslt/commit/f32502000e6e6404125988d67cd9503ef8677e43"
+ ]
+ }
+ ]
+ }
+ ]
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/libzip@1.11.4",
+ "name": "libzip",
+ "version": "1.11.4",
+ "purl": "pkg:generic/libzip@1.11.4",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libzip-1.11.4-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/nih-at/libzip"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/nih-at/libzip/tree/v1.11.4"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/libzip.git@94b3e6583c6ddf77d3fef95699310818a91bc23a"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "libzip"
+ },
+ {
+ "name": "php:component",
+ "value": "libzip"
+ },
+ {
+ "name": "php:version",
+ "value": "1.11.4"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "1.11.4"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "nih-at/libzip"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/nih-at/libzip"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v1.11.4"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/libzip"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/libzip"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "libzip-1.11.4"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "94b3e6583c6ddf77d3fef95699310818a91bc23a"
+ },
+ {
+ "name": "php:input-version",
+ "value": "libzip-1.11.4"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "libzip-1.11.4-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libzip-1.11.4-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:libzip:1.11.4",
+ "name": "libzip",
+ "version": "1.11.4",
+ "purl": "pkg:generic/libzip@1.11.4"
+ }
+ ],
+ "notes": "Built from winlibs/libzip ref libzip-1.11.4 at commit 94b3e6583c6ddf77d3fef95699310818a91bc23a with upstream identity nih-at/libzip tag v1.11.4."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/mpir@3.0.0-2",
+ "name": "mpir",
+ "version": "3.0.0-2",
+ "purl": "pkg:generic/mpir@3.0.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "LGPL-3.0-or-later"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/mpir-3.0.0-2-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/wbhart/mpir"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/wbhart/mpir/tree/mpir-3.0.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/mpir.git@796ed2cee089c96dc254caec624fe9084c3a68c3"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "mpir"
+ },
+ {
+ "name": "php:component",
+ "value": "mpir"
+ },
+ {
+ "name": "php:version",
+ "value": "3.0.0-2"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.0.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "wbhart/mpir"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/wbhart/mpir"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "mpir-3.0.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/mpir"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/mpir"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "mpir-3.0.0-2"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "796ed2cee089c96dc254caec624fe9084c3a68c3"
+ },
+ {
+ "name": "php:input-version",
+ "value": "mpir-3.0.0-2"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "mpir-3.0.0-2-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/mpir-3.0.0-2-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:mpir:3.0.0",
+ "name": "mpir",
+ "version": "3.0.0",
+ "purl": "pkg:generic/mpir@3.0.0"
+ }
+ ],
+ "notes": "Built from winlibs/mpir ref mpir-3.0.0-2 at commit 796ed2cee089c96dc254caec624fe9084c3a68c3 with upstream identity wbhart/mpir tag mpir-3.0.0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/net-snmp@5.9.4",
+ "name": "net-snmp",
+ "version": "5.9.4",
+ "purl": "pkg:generic/net-snmp@5.9.4",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/net-snmp-5.9.4-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/net-snmp/net-snmp"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/net-snmp/net-snmp/tree/v5.9.4"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/net-snmp.git@0c478089ece16d6346fbf464a9ef00d17f123fc3"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "net-snmp"
+ },
+ {
+ "name": "php:component",
+ "value": "net-snmp"
+ },
+ {
+ "name": "php:version",
+ "value": "5.9.4"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "5.9.4"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "net-snmp/net-snmp"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/net-snmp/net-snmp"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v5.9.4"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/net-snmp"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/net-snmp"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "net-snmp-5.9.4"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "0c478089ece16d6346fbf464a9ef00d17f123fc3"
+ },
+ {
+ "name": "php:input-version",
+ "value": "net-snmp-5.9.4"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "net-snmp-5.9.4-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/net-snmp-5.9.4-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:net-snmp:5.9.4",
+ "name": "net-snmp",
+ "version": "5.9.4",
+ "purl": "pkg:generic/net-snmp@5.9.4"
+ }
+ ],
+ "notes": "Built from winlibs/net-snmp ref net-snmp-5.9.4 at commit 0c478089ece16d6346fbf464a9ef00d17f123fc3 with upstream identity net-snmp/net-snmp tag v5.9.4."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/openldap@2.7.0-2",
+ "name": "openldap",
+ "version": "2.7.0-2",
+ "purl": "pkg:generic/openldap@2.7.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "OLDAP-2.8"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openldap-2.7.0-2-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/openldap/openldap"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/openldap/openldap/tree/OPENLDAP_REL_ENG_2_7_0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/openldap.git@4b2449a2e39d92b3b789ff71350b4bf70ed0713e"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "openldap"
+ },
+ {
+ "name": "php:component",
+ "value": "openldap"
+ },
+ {
+ "name": "php:version",
+ "value": "2.7.0-2"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.7.0"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "openldap/openldap"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/openldap/openldap"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "OPENLDAP_REL_ENG_2_7_0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/openldap"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/openldap"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "openldap-2.7.0-2"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "4b2449a2e39d92b3b789ff71350b4bf70ed0713e"
+ },
+ {
+ "name": "php:input-version",
+ "value": "openldap-2.7.0-2"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "openldap-2.7.0-2-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openldap-2.7.0-2-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:openldap:openldap:2.7.0:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:openldap:2.7.0",
+ "name": "openldap",
+ "version": "2.7.0",
+ "purl": "pkg:generic/openldap@2.7.0"
+ }
+ ],
+ "notes": "Built from winlibs/openldap ref openldap-2.7.0-2 at commit 4b2449a2e39d92b3b789ff71350b4bf70ed0713e with upstream identity openldap/openldap tag OPENLDAP_REL_ENG_2_7_0."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/rxspencer@3.9.0",
+ "name": "rxspencer",
+ "version": "3.9.0",
+ "purl": "pkg:generic/rxspencer@3.9.0",
+ "licenses": [
+ {
+ "license": {
+ "id": "Spencer-94"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "website",
+ "url": "https://github.com/garyhouston/rxspencer"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/garyhouston/rxspencer/tree/v3.9.0"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/garyhouston/rxspencer.git@9f835b523f1af617ca54e06863a1924c23f6e56a"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:component-origin",
+ "value": "embedded"
+ },
+ {
+ "name": "php:source-path",
+ "value": "rxspencer"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "garyhouston/rxspencer"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/garyhouston/rxspencer"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "v3.9.0"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "garyhouston/rxspencer"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/garyhouston/rxspencer"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "v3.9.0"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "9f835b523f1af617ca54e06863a1924c23f6e56a"
+ }
+ ]
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/sqlite3@3.53.4",
+ "name": "sqlite3",
+ "version": "3.53.4",
+ "purl": "pkg:generic/sqlite@3.53.4",
+ "licenses": [
+ {
+ "license": {
+ "id": "blessing"
+ }
+ }
+ ],
+ "copyright": "NONE",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/sqlite3-3.53.4-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/sqlite/sqlite"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/sqlite/sqlite/tree/version-3.53.4"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/sqlite3.git@90771f2f145baf5b9a2e094ff9ad36d700079125"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "sqlite3"
+ },
+ {
+ "name": "php:component",
+ "value": "sqlite3"
+ },
+ {
+ "name": "php:version",
+ "value": "3.53.4"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "3.53.4"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "sqlite/sqlite"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/sqlite/sqlite"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "version-3.53.4"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/sqlite3"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/sqlite3"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "sqlite3-3.53.4"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "90771f2f145baf5b9a2e094ff9ad36d700079125"
+ },
+ {
+ "name": "php:input-version",
+ "value": "sqlite3-3.53.4"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "sqlite3-3.53.4-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/sqlite3-3.53.4-vs17-x64.zip"
+ }
+ ],
+ "cpe": "cpe:2.3:a:sqlite:sqlite:3.53.4:*:*:*:*:*:*:*",
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:sqlite3:3.53.4",
+ "name": "sqlite3",
+ "version": "3.53.4",
+ "purl": "pkg:generic/sqlite@3.53.4"
+ }
+ ],
+ "notes": "Built from winlibs/sqlite3 ref sqlite3-3.53.4 at commit 90771f2f145baf5b9a2e094ff9ad36d700079125 with upstream identity sqlite/sqlite tag version-3.53.4."
+ }
+ },
+ {
+ "type": "library",
+ "bom-ref": "pkg:php-windows-deps/wineditline@2.208",
+ "name": "wineditline",
+ "version": "2.208",
+ "purl": "pkg:generic/wineditline@2.208",
+ "licenses": [
+ {
+ "license": {
+ "id": "BSD-3-Clause"
+ }
+ }
+ ],
+ "copyright": "See accompanying license and notice files.",
+ "supplier": {
+ "name": "Winlibs"
+ },
+ "externalReferences": [
+ {
+ "type": "distribution",
+ "url": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/wineditline-2.208-vs17-x64.zip"
+ },
+ {
+ "type": "website",
+ "url": "https://github.com/ptosco/wineditline"
+ },
+ {
+ "type": "vcs",
+ "url": "https://github.com/ptosco/wineditline/tree/wineditline-2.208"
+ },
+ {
+ "type": "vcs",
+ "url": "git+https://github.com/winlibs/wineditline.git@39ae4ff02a06c97f804833844b767777d6625fb8"
+ }
+ ],
+ "properties": [
+ {
+ "name": "php:library",
+ "value": "wineditline"
+ },
+ {
+ "name": "php:component",
+ "value": "wineditline"
+ },
+ {
+ "name": "php:version",
+ "value": "2.208"
+ },
+ {
+ "name": "php:upstream-version",
+ "value": "2.208"
+ },
+ {
+ "name": "php:source-origin",
+ "value": "winlibs-fork"
+ },
+ {
+ "name": "php:upstream-repository",
+ "value": "ptosco/wineditline"
+ },
+ {
+ "name": "php:upstream-url",
+ "value": "https://github.com/ptosco/wineditline"
+ },
+ {
+ "name": "php:upstream-tag",
+ "value": "wineditline-2.208"
+ },
+ {
+ "name": "php:source-repository",
+ "value": "winlibs/wineditline"
+ },
+ {
+ "name": "php:source-url",
+ "value": "https://github.com/winlibs/wineditline"
+ },
+ {
+ "name": "php:source-ref",
+ "value": "WinEditLine-2.208"
+ },
+ {
+ "name": "php:source-commit",
+ "value": "39ae4ff02a06c97f804833844b767777d6625fb8"
+ },
+ {
+ "name": "php:input-version",
+ "value": "WinEditLine-2.208"
+ },
+ {
+ "name": "php:vs",
+ "value": "vs17"
+ },
+ {
+ "name": "php:arch",
+ "value": "x64"
+ },
+ {
+ "name": "php:php-version",
+ "value": "8.4"
+ },
+ {
+ "name": "php:package-file-name",
+ "value": "wineditline-2.208-vs17-x64.zip"
+ },
+ {
+ "name": "php:download-location",
+ "value": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/wineditline-2.208-vs17-x64.zip"
+ }
+ ],
+ "pedigree": {
+ "ancestors": [
+ {
+ "type": "library",
+ "bom-ref": "urn:php:upstream:wineditline:2.208",
+ "name": "wineditline",
+ "version": "2.208",
+ "purl": "pkg:generic/wineditline@2.208"
+ }
+ ],
+ "notes": "Built from winlibs/wineditline ref WinEditLine-2.208 at commit 39ae4ff02a06c97f804833844b767777d6625fb8 with upstream identity ptosco/wineditline tag wineditline-2.208."
+ }
+ }
+ ],
+ "dependencies": [
+ {
+ "ref": "pkg:php-windows-deps/ICU@77.1-1",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/apache@2.4.68",
+ "dependsOn": [
+ "pkg:php-windows-deps/apr-iconv@1.2.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/apr-iconv@1.2.2",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/brotli@1.2.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/fbclient@4.0.7",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/freetype@2.14.3",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/glib@2.88.3",
+ "dependsOn": [
+ "pkg:php-windows-deps/libffi@3.8.0",
+ "pkg:php-windows-deps/libintl@1.0",
+ "pkg:php-windows-deps/zlib@1.3.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libffi@3.8.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libintl@1.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/zlib@1.3.2",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libargon2@20190702",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/aom@3.14.1",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libavif@1.4.2",
+ "dependsOn": [
+ "pkg:php-windows-deps/aom@3.14.1"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libbzip2@1.0.8-1",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libcurl@8.21.0-1",
+ "dependsOn": [
+ "pkg:php-windows-deps/brotli@1.2.0",
+ "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "pkg:php-windows-deps/libzstd@1.5.7",
+ "pkg:php-windows-deps/nghttp2@1.70.0",
+ "pkg:php-windows-deps/openssl@3.5.7",
+ "pkg:php-windows-deps/zlib@1.3.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "dependsOn": [
+ "pkg:php-windows-deps/openssl@3.5.7",
+ "pkg:php-windows-deps/zlib@1.3.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libzstd@1.5.7",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/nghttp2@1.70.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/openssl@3.5.7",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libenchant2@2.8.19",
+ "dependsOn": [
+ "pkg:php-windows-deps/glib@2.88.3"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libiconv@1.19",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libjpeg-turbo@3.2.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/liblmdb@0.9.35",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/liblzma@5.8.3",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libonig@6.9.10",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libpng@1.6.58",
+ "dependsOn": [
+ "pkg:php-windows-deps/zlib@1.3.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libpq@16.15",
+ "dependsOn": [
+ "pkg:php-windows-deps/openssl@3.0.21.pl1"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/openssl@3.0.21.pl1",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libqdbm@1.8.78",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libsasl@2.1.28",
+ "dependsOn": [
+ "pkg:php-windows-deps/liblmdb@0.9.35",
+ "pkg:php-windows-deps/openssl@3.0.21.pl1",
+ "pkg:php-windows-deps/sqlite3@3.53.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/sqlite3@3.53.2",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libsodium@1.0.22",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libtidy@5.8.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libwebp@1.6.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "dependsOn": [
+ "pkg:php-windows-deps/libiconv@1.19"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libxpm@3.5.19",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "dependsOn": [
+ "pkg:php-windows-deps/libiconv@1.19",
+ "pkg:php-windows-deps/libxml2@2.11.9-7"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/libzip@1.11.4",
+ "dependsOn": [
+ "pkg:php-windows-deps/libbzip2@1.0.8-1",
+ "pkg:php-windows-deps/liblzma@5.8.3",
+ "pkg:php-windows-deps/zlib@1.3.2"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/mpir@3.0.0-2",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/net-snmp@5.9.4",
+ "dependsOn": [
+ "pkg:php-windows-deps/openssl@3.0.21.pl1"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/openldap@2.7.0-2",
+ "dependsOn": [
+ "pkg:php-windows-deps/libsasl@2.1.28",
+ "pkg:php-windows-deps/openssl@3.0.21.pl1",
+ "pkg:php-windows-deps/rxspencer@3.9.0"
+ ]
+ },
+ {
+ "ref": "pkg:php-windows-deps/rxspencer@3.9.0",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/sqlite3@3.53.4",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:php-windows-deps/wineditline@2.208",
+ "dependsOn": []
+ },
+ {
+ "ref": "pkg:generic/php@8.5.10",
+ "dependsOn": [
+ "pkg:generic/berkeley-uuencode",
+ "pkg:generic/boost-context-assembly",
+ "pkg:generic/crypt_blowfish@1.3",
+ "pkg:generic/dynasm@1.5.0",
+ "pkg:generic/freesec-libcrypt",
+ "pkg:generic/libarchive-format-octal",
+ "pkg:generic/libavifinfo@2b924defa4c2cd227540efe164067a8cc913eeba",
+ "pkg:generic/libbcmath@0.2",
+ "pkg:generic/libgd@2.0.35",
+ "pkg:generic/libmagic@5.46",
+ "pkg:generic/libmbfl@1.3.2",
+ "pkg:generic/libzip-zip-dirent",
+ "pkg:generic/mtrand@1.0",
+ "pkg:generic/openldap-ucgendat",
+ "pkg:generic/pcre2@10.44",
+ "pkg:generic/snprintf",
+ "pkg:generic/strlcat",
+ "pkg:generic/strlcpy",
+ "pkg:generic/strnatcmp",
+ "pkg:generic/tcl-scanf@8.3.0",
+ "pkg:generic/timelib@2022.17",
+ "pkg:generic/xkcp-sha3",
+ "pkg:generic/xxhash@0.8.1",
+ "pkg:php-windows-deps/ICU@77.1-1",
+ "pkg:php-windows-deps/apache@2.4.68",
+ "pkg:php-windows-deps/brotli@1.2.0",
+ "pkg:php-windows-deps/fbclient@4.0.7",
+ "pkg:php-windows-deps/freetype@2.14.3",
+ "pkg:php-windows-deps/glib@2.88.3",
+ "pkg:php-windows-deps/libargon2@20190702",
+ "pkg:php-windows-deps/libavif@1.4.2",
+ "pkg:php-windows-deps/libbzip2@1.0.8-1",
+ "pkg:php-windows-deps/libcurl@8.21.0-1",
+ "pkg:php-windows-deps/libenchant2@2.8.19",
+ "pkg:php-windows-deps/libffi@3.8.0",
+ "pkg:php-windows-deps/libiconv@1.19",
+ "pkg:php-windows-deps/libintl@1.0",
+ "pkg:php-windows-deps/libjpeg-turbo@3.2.0",
+ "pkg:php-windows-deps/liblmdb@0.9.35",
+ "pkg:php-windows-deps/liblzma@5.8.3",
+ "pkg:php-windows-deps/libonig@6.9.10",
+ "pkg:php-windows-deps/libpng@1.6.58",
+ "pkg:php-windows-deps/libpq@16.15",
+ "pkg:php-windows-deps/libqdbm@1.8.78",
+ "pkg:php-windows-deps/libsasl@2.1.28",
+ "pkg:php-windows-deps/libsodium@1.0.22",
+ "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "pkg:php-windows-deps/libtidy@5.8.0",
+ "pkg:php-windows-deps/libwebp@1.6.0",
+ "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "pkg:php-windows-deps/libxpm@3.5.19",
+ "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "pkg:php-windows-deps/libzip@1.11.4",
+ "pkg:php-windows-deps/libzstd@1.5.7",
+ "pkg:php-windows-deps/mpir@3.0.0-2",
+ "pkg:php-windows-deps/net-snmp@5.9.4",
+ "pkg:php-windows-deps/nghttp2@1.70.0",
+ "pkg:php-windows-deps/openldap@2.7.0-2",
+ "pkg:php-windows-deps/openssl@3.5.7",
+ "pkg:php-windows-deps/sqlite3@3.53.4",
+ "pkg:php-windows-deps/wineditline@2.208",
+ "pkg:php-windows-deps/zlib@1.3.2"
+ ]
+ }
+ ],
+ "vulnerabilities": [
+ {
+ "id": "CVE-1999-0289",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-1999-0289"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/apache@2.4.68"
+ }
+ ],
+ "analysis": {
+ "state": "not_affected",
+ "justification": "code_not_present",
+ "detail": "The affected legacy Win32 path handling is not present in Apache HTTP Server 2.4 builds."
+ }
+ },
+ {
+ "id": "CVE-1999-0678",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-1999-0678"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/apache@2.4.68"
+ }
+ ],
+ "analysis": {
+ "state": "not_affected",
+ "justification": "code_not_present",
+ "detail": "This CVE concerns a Debian default ServerRoot configuration; Debian packaging and configuration are not present in the Windows artifact."
+ }
+ },
+ {
+ "id": "CVE-2025-3891",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3891"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/apache@2.4.68"
+ }
+ ],
+ "analysis": {
+ "state": "not_affected",
+ "justification": "code_not_present",
+ "detail": "This CVE affects mod_auth_openidc, which is a separate module and is not included in the Apache dependency artifact."
+ }
+ },
+ {
+ "id": "CVE-2025-15661",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-15661"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream bounds-checked parsing for malformed SFTP symlink responses in src/sftp.c and the follow-up SSH_FXP_STATUS response handling fix."
+ }
+ },
+ {
+ "id": "CVE-2026-55199",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55199"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream parse-failure handling for SSH_MSG_EXT_INFO extension name and value strings in src/packet.c."
+ }
+ },
+ {
+ "id": "CVE-2026-55200",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55200"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream packet length upper-bound validation in src/transport.c."
+ }
+ },
+ {
+ "id": "CVE-2026-58050",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58050"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream bounds checking for public-key attribute counts in src/publickey.c."
+ }
+ },
+ {
+ "id": "CVE-2026-58051",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58051"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream initialization of newly allocated public-key list entries in src/publickey.c."
+ }
+ },
+ {
+ "id": "CVE-2026-66032",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66032"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream nullification of freed SFTP response data in src/sftp.c."
+ }
+ },
+ {
+ "id": "CVE-2026-66033",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66033"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream runtime bounds checks for AES-GCM block processing in src/openssl.c."
+ }
+ },
+ {
+ "id": "CVE-2026-66034",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66034"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream bounds checking for public-key comment lengths in src/publickey.c."
+ }
+ },
+ {
+ "id": "CVE-2026-66035",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66035"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream lower-bound validation for Encrypt-then-MAC packet decryption in src/transport.c."
+ }
+ },
+ {
+ "id": "CVE-2026-7598",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-7598"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libssh2@1.11.1-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting upstream username_len bounds checking in src/userauth.c."
+ }
+ },
+ {
+ "id": "CVE-2017-8806",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-8806"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libpq@16.15"
+ }
+ ],
+ "analysis": {
+ "state": "not_affected",
+ "justification": "code_not_present",
+ "detail": "This CVE affects Debian and Ubuntu postgresql-common cluster scripts, which are not included in the Windows libpq artifact."
+ }
+ },
+ {
+ "id": "CVE-2023-45322",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-45322"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream DTD-copy use-after-free fix in xmlStaticCopyNodeList and its regression follow-up in winlibs/libxml2 tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2024-56171",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-56171"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-24928",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24928"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-27113",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27113"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by winlibs/libxml2 backport in tag libxml2-2.11.9-1."
+ }
+ },
+ {
+ "id": "CVE-2025-32414",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32414"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-32415",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32415"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the xmlSchemaIDCFillNodeTables heap buffer overflow backport in winlibs/libxml2 tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-49794",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49794"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-49795",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49795"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-49796",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49796"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-6021",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6021"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-6170",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6170"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the debugXML interactive shell buffer overflow backport in winlibs/libxml2 tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-7425",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7425"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by preserving libxslt private flag bits in winlibs/libxml2 tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-8732",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8732"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by SGML catalog recursion limit backport in winlibs/libxml2 tag libxml2-2.11.9-5."
+ }
+ },
+ {
+ "id": "CVE-2026-0989",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0989"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2026-0990",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0990"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2026-0992",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0992"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport and compatibility follow-up in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2026-11979",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-11979"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by backporting the upstream bounds checks for xmlcatalog --shell command and argument parsing in winlibs/libxml2 tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2026-1757",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1757"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxml2@2.11.9-7"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ }
+ },
+ {
+ "id": "CVE-2025-10911",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10911"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxslt@1.1.43-2"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2."
+ }
+ },
+ {
+ "id": "CVE-2025-11731",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-11731"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxslt@1.1.43-2"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2."
+ }
+ },
+ {
+ "id": "CVE-2025-7424",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7424"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxslt@1.1.43-2"
+ }
+ ],
+ "analysis": {
+ "state": "resolved",
+ "response": [
+ "update"
+ ],
+ "detail": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2."
+ }
+ },
+ {
+ "id": "CVE-2025-7425",
+ "source": {
+ "name": "NVD",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7425"
+ },
+ "affects": [
+ {
+ "ref": "pkg:php-windows-deps/libxslt@1.1.43-2"
+ }
+ ],
+ "analysis": {
+ "state": "not_affected",
+ "justification": "protected_by_mitigating_control",
+ "detail": "The patched libxml2 dependency shipped with this Winlibs build preserves the private atype flag bits, preventing the corruption in libxslt."
+ }
+ }
+ ]
+}
diff --git a/ParlzDownloadMAX/PHP/bin/extras/sbom/php.openvex.json b/ParlzDownloadMAX/PHP/bin/extras/sbom/php.openvex.json
new file mode 100644
index 0000000..4b06d0c
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/extras/sbom/php.openvex.json
@@ -0,0 +1,590 @@
+{
+ "@context": "https://openvex.dev/ns/v0.2.0",
+ "@id": "https://php.net/sbom/windows/php/8.5.10/vex/17b9cda9-4457-42ea-a4b1-8bf5d3b29082",
+ "author": "PHP Group",
+ "timestamp": "2026-08-25T21:29:48Z",
+ "version": 1,
+ "statements": [
+ {
+ "vulnerability": {
+ "name": "CVE-1999-0289"
+ },
+ "timestamp": "2026-07-18T08:34:11Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/apache@2.4.68",
+ "identifiers": {
+ "purl": "pkg:generic/apache-httpd@2.4.68"
+ }
+ }
+ ],
+ "status": "not_affected",
+ "justification": "vulnerable_code_not_present",
+ "impact_statement": "The affected legacy Win32 path handling is not present in Apache HTTP Server 2.4 builds."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-1999-0678"
+ },
+ "timestamp": "2026-07-18T08:34:11Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/apache@2.4.68",
+ "identifiers": {
+ "purl": "pkg:generic/apache-httpd@2.4.68"
+ }
+ }
+ ],
+ "status": "not_affected",
+ "justification": "component_not_present",
+ "impact_statement": "This CVE concerns a Debian default ServerRoot configuration; Debian packaging and configuration are not present in the Windows artifact."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-3891"
+ },
+ "timestamp": "2026-07-18T08:34:11Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/apache@2.4.68",
+ "identifiers": {
+ "purl": "pkg:generic/apache-httpd@2.4.68"
+ }
+ }
+ ],
+ "status": "not_affected",
+ "justification": "component_not_present",
+ "impact_statement": "This CVE affects mod_auth_openidc, which is a separate module and is not included in the Apache dependency artifact."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2017-8806"
+ },
+ "timestamp": "2026-08-15T04:25:38Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libpq@16.15",
+ "identifiers": {
+ "purl": "pkg:generic/postgresql@16.15"
+ }
+ }
+ ],
+ "status": "not_affected",
+ "justification": "component_not_present",
+ "impact_statement": "This CVE affects Debian and Ubuntu postgresql-common cluster scripts, which are not included in the Windows libpq artifact."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-7598"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting upstream username_len bounds checking in src/userauth.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-15661"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream bounds-checked parsing for malformed SFTP symlink responses in src/sftp.c and the follow-up SSH_FXP_STATUS response handling fix."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-55199"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream parse-failure handling for SSH_MSG_EXT_INFO extension name and value strings in src/packet.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-55200"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream packet length upper-bound validation in src/transport.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-58050"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream bounds checking for public-key attribute counts in src/publickey.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-58051"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream initialization of newly allocated public-key list entries in src/publickey.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-66032"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream nullification of freed SFTP response data in src/sftp.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-66033"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream runtime bounds checks for AES-GCM block processing in src/openssl.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-66034"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream bounds checking for public-key comment lengths in src/publickey.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-66035"
+ },
+ "timestamp": "2026-08-02T09:28:50Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libssh2@1.11.1-7",
+ "identifiers": {
+ "purl": "pkg:generic/libssh2@1.11.1"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream lower-bound validation for Encrypt-then-MAC packet decryption in src/transport.c."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2024-56171"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-24928"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-27113"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by winlibs/libxml2 backport in tag libxml2-2.11.9-1."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-32414"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-32415"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the xmlSchemaIDCFillNodeTables heap buffer overflow backport in winlibs/libxml2 tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-49794"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-49795"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-49796"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 schematron backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-6021"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-6170"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the debugXML interactive shell buffer overflow backport in winlibs/libxml2 tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-7425"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by preserving libxslt private flag bits in winlibs/libxml2 tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-8732"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by SGML catalog recursion limit backport in winlibs/libxml2 tag libxml2-2.11.9-5."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-0989"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-0990"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-0992"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport and compatibility follow-up in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-1757"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxml2 backport in tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2023-45322"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream DTD-copy use-after-free fix in xmlStaticCopyNodeList and its regression follow-up in winlibs/libxml2 tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2026-11979"
+ },
+ "timestamp": "2026-07-16T19:59:36Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxml2@2.11.9-7",
+ "identifiers": {
+ "purl": "pkg:generic/libxml2@2.11.9"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by backporting the upstream bounds checks for xmlcatalog --shell command and argument parsing in winlibs/libxml2 tag libxml2-2.11.9-7."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-10911"
+ },
+ "timestamp": "2026-07-16T20:01:12Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "identifiers": {
+ "purl": "pkg:generic/libxslt@1.1.43"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-11731"
+ },
+ "timestamp": "2026-07-16T20:01:12Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "identifiers": {
+ "purl": "pkg:generic/libxslt@1.1.43"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-7424"
+ },
+ "timestamp": "2026-07-16T20:01:12Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "identifiers": {
+ "purl": "pkg:generic/libxslt@1.1.43"
+ }
+ }
+ ],
+ "status": "fixed",
+ "action_statement": "Fixed by the winlibs/libxslt backport in tag libxslt-1.1.43-2."
+ },
+ {
+ "vulnerability": {
+ "name": "CVE-2025-7425"
+ },
+ "timestamp": "2026-07-16T20:01:12Z",
+ "products": [
+ {
+ "@id": "pkg:php-windows-deps/libxslt@1.1.43-2",
+ "identifiers": {
+ "purl": "pkg:generic/libxslt@1.1.43"
+ }
+ }
+ ],
+ "status": "not_affected",
+ "justification": "inline_mitigations_already_exist",
+ "impact_statement": "The patched libxml2 dependency shipped with this Winlibs build preserves the private atype flag bits, preventing the corruption in libxslt."
+ }
+ ]
+}
diff --git a/ParlzDownloadMAX/PHP/bin/extras/sbom/php.spdx.json b/ParlzDownloadMAX/PHP/bin/extras/sbom/php.spdx.json
new file mode 100644
index 0000000..7f2fbe7
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/extras/sbom/php.spdx.json
@@ -0,0 +1,3754 @@
+{
+ "spdxVersion": "SPDX-2.3",
+ "dataLicense": "CC0-1.0",
+ "SPDXID": "SPDXRef-DOCUMENT",
+ "name": "php-8.5.10",
+ "documentNamespace": "https://php.net/sbom/windows/php/8.5.10/14f24591-100f-49ca-9568-1e59e9aed486",
+ "creationInfo": {
+ "created": "2026-08-25T21:29:48Z",
+ "creators": [
+ "Organization: PHP Group",
+ "Tool: php-8.5.10"
+ ],
+ "licenseListVersion": "3.28"
+ },
+ "documentDescribes": [
+ "SPDXRef-PHP"
+ ],
+ "packages": [
+ {
+ "name": "php",
+ "SPDXID": "SPDXRef-PHP",
+ "versionInfo": "8.5.10",
+ "downloadLocation": "NOASSERTION",
+ "filesAnalyzed": false,
+ "licenseConcluded": "PHP-3.01",
+ "licenseDeclared": "PHP-3.01",
+ "copyrightText": "Copyright (c) 1999 - 2024 The PHP Group. All rights reserved.",
+ "supplier": "Organization: PHP Group",
+ "originator": "Organization: PHP Group",
+ "primaryPackagePurpose": "APPLICATION",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/php@8.5.10"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:php:php:8.5.10:*:*:*:*:*:*:*"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationDate": "2026-08-25T21:29:48Z",
+ "annotationType": "OTHER",
+ "annotator": "Tool: php-8.5.10",
+ "comment": "php:dependency-sbom-status=present"
+ }
+ ]
+ },
+ {
+ "name": "Berkeley uuencode",
+ "SPDXID": "SPDXRef-Source-Berkeley-uuencode-snapshot-25636b9321c2-1",
+ "versionInfo": "snapshot-25636b9321c2",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/standard/uuencode.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-4-Clause-UC",
+ "licenseDeclared": "BSD-4-Clause-UC",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/standard/uuencode.c; source digest SHA-256 (file-content-v1): 25636b9321c2859ac28ee4ad7148270ebccaa79143777b623d84985622875597",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "25636b9321c2859ac28ee4ad7148270ebccaa79143777b623d84985622875597"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/berkeley-uuencode"
+ }
+ ]
+ },
+ {
+ "name": "Boost.Context assembly",
+ "SPDXID": "SPDXRef-Source-Boost.Context-assembly-snapshot-6abda7f14758-2",
+ "versionInfo": "snapshot-6abda7f14758",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/Zend/asm",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSL-1.0",
+ "licenseDeclared": "BSL-1.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at Zend/asm; source digest SHA-256 (relative-path-and-file-sha256-v1): 6abda7f14758e771821c255ee9be016c31e181d259bfe394098769013c7b1192",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "6abda7f14758e771821c255ee9be016c31e181d259bfe394098769013c7b1192"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/boost-context-assembly"
+ }
+ ]
+ },
+ {
+ "name": "crypt_blowfish",
+ "SPDXID": "SPDXRef-Source-crypt-blowfish-1.3-3",
+ "versionInfo": "1.3",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/standard/crypt_blowfish.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "bcrypt-Solar-Designer",
+ "licenseDeclared": "bcrypt-Solar-Designer",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/standard/crypt_blowfish.c; source digest SHA-256 (file-content-v1): f3f115c759bf08bdb7f41a47fd8afdd7985ee51227298caa72530ffb14c10e94",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "f3f115c759bf08bdb7f41a47fd8afdd7985ee51227298caa72530ffb14c10e94"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/crypt_blowfish@1.3"
+ }
+ ]
+ },
+ {
+ "name": "DynASM",
+ "SPDXID": "SPDXRef-Source-DynASM-1.5.0-4",
+ "versionInfo": "1.5.0",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/opcache/jit/ir/dynasm",
+ "filesAnalyzed": false,
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/opcache/jit/ir/dynasm; source digest SHA-256 (relative-path-and-file-sha256-v1): d2d56ba8be243d8330b96f0aaf416dd4f8e153667a9ee07fcfe5cf7cf8e2fa22",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "d2d56ba8be243d8330b96f0aaf416dd4f8e153667a9ee07fcfe5cf7cf8e2fa22"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/dynasm@1.5.0"
+ }
+ ]
+ },
+ {
+ "name": "FreeSec libcrypt",
+ "SPDXID": "SPDXRef-Source-FreeSec-libcrypt-snapshot-6b1d1d57b0af-5",
+ "versionInfo": "snapshot-6b1d1d57b0af",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/standard/crypt_freesec.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/standard/crypt_freesec.c; source digest SHA-256 (file-content-v1): 6b1d1d57b0af0da0fcdb3a72c5a2137a7c489303b8d55558db7359f10337aa2f",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "6b1d1d57b0af0da0fcdb3a72c5a2137a7c489303b8d55558db7359f10337aa2f"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/freesec-libcrypt"
+ }
+ ]
+ },
+ {
+ "name": "libarchive tar format_octal",
+ "SPDXID": "SPDXRef-Source-libarchive-tar-format-octal-snapshot-36341177800f-6",
+ "versionInfo": "snapshot-36341177800f",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/phar/tar.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-2-Clause",
+ "licenseDeclared": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/phar/tar.c; source digest SHA-256 (file-content-v1): 36341177800fc8f5646c62cc2a4b3dacd24b58b277cdfef47ce902e014288b17",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "36341177800fc8f5646c62cc2a4b3dacd24b58b277cdfef47ce902e014288b17"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libarchive-format-octal"
+ }
+ ]
+ },
+ {
+ "name": "libavifinfo",
+ "SPDXID": "SPDXRef-Source-libavifinfo-2b924defa4c2cd227540efe164067a8cc913eeba-7",
+ "versionInfo": "2b924defa4c2cd227540efe164067a8cc913eeba",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/standard/libavifinfo",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-2-Clause",
+ "licenseDeclared": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/standard/libavifinfo; source digest SHA-256 (relative-path-and-file-sha256-v1): eebfce3dfe05d5173f6c95afcfb780eb4eda76cbff22d7149dffc6fd4590a8a1",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "eebfce3dfe05d5173f6c95afcfb780eb4eda76cbff22d7149dffc6fd4590a8a1"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libavifinfo@2b924defa4c2cd227540efe164067a8cc913eeba"
+ }
+ ]
+ },
+ {
+ "name": "libbcmath",
+ "SPDXID": "SPDXRef-Source-libbcmath-0.2-8",
+ "versionInfo": "0.2",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/bcmath/libbcmath",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-2.1-only",
+ "licenseDeclared": "LGPL-2.1-only",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/bcmath/libbcmath; source digest SHA-256 (relative-path-and-file-sha256-v1): 1dc7ff5094242a377246b4462aeb0efd5142dc5fba9c4ab3bdfdc263f009973e",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "1dc7ff5094242a377246b4462aeb0efd5142dc5fba9c4ab3bdfdc263f009973e"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libbcmath@0.2"
+ }
+ ]
+ },
+ {
+ "name": "libgd",
+ "SPDXID": "SPDXRef-Source-libgd-2.0.35-9",
+ "versionInfo": "2.0.35",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/gd/libgd",
+ "filesAnalyzed": false,
+ "licenseConcluded": "GD",
+ "licenseDeclared": "GD",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/gd/libgd; source digest SHA-256 (relative-path-and-file-sha256-v1): d4d2379d9a61d03fd9458bc13ccb2ff67096c364a780d1dbf342585f0ddb411f",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "d4d2379d9a61d03fd9458bc13ccb2ff67096c364a780d1dbf342585f0ddb411f"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libgd@2.0.35"
+ }
+ ]
+ },
+ {
+ "name": "libmagic",
+ "SPDXID": "SPDXRef-Source-libmagic-5.46-10",
+ "versionInfo": "5.46",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/fileinfo/libmagic",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-2-Clause",
+ "licenseDeclared": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/fileinfo/libmagic; source digest SHA-256 (relative-path-and-file-sha256-v1): 7924d405b2f9ef3c1ff2b28a4e4d40042de73e668ceae479086d37330891d0d6",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "7924d405b2f9ef3c1ff2b28a4e4d40042de73e668ceae479086d37330891d0d6"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libmagic@5.46"
+ }
+ ]
+ },
+ {
+ "name": "libmbfl",
+ "SPDXID": "SPDXRef-Source-libmbfl-1.3.2-11",
+ "versionInfo": "1.3.2",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/mbstring/libmbfl",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-2.1-only",
+ "licenseDeclared": "LGPL-2.1-only",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/mbstring/libmbfl; source digest SHA-256 (relative-path-and-file-sha256-v1): ce20ebaad689bfc0dabfb1ad9dec9bfbea30b299430465566db997084a939a2a",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "ce20ebaad689bfc0dabfb1ad9dec9bfbea30b299430465566db997084a939a2a"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libmbfl@1.3.2"
+ }
+ ]
+ },
+ {
+ "name": "libzip zip_dirent",
+ "SPDXID": "SPDXRef-Source-libzip-zip-dirent-snapshot-79aa92b5cca9-12",
+ "versionInfo": "snapshot-79aa92b5cca9",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/phar/zip.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/phar/zip.c; source digest SHA-256 (file-content-v1): 79aa92b5cca9f1bf4eedad9f72925b580707449a6d4e422db0c87e020f9222dc",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "79aa92b5cca9f1bf4eedad9f72925b580707449a6d4e422db0c87e020f9222dc"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libzip-zip-dirent"
+ }
+ ]
+ },
+ {
+ "name": "MTRand",
+ "SPDXID": "SPDXRef-Source-MTRand-1.0-13",
+ "versionInfo": "1.0",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/random/engine_mt19937.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/random/engine_mt19937.c; source digest SHA-256 (file-content-v1): e789018f1e172ec356910fb66d9d50f13b780e05920e12d510395beaf96196ac",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "e789018f1e172ec356910fb66d9d50f13b780e05920e12d510395beaf96196ac"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/mtrand@1.0"
+ }
+ ]
+ },
+ {
+ "name": "OpenLDAP ucgendat",
+ "SPDXID": "SPDXRef-Source-OpenLDAP-ucgendat-snapshot-572651bf88b0-14",
+ "versionInfo": "snapshot-572651bf88b0",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/mbstring/ucgendat/ucgendat.php",
+ "filesAnalyzed": false,
+ "licenseConcluded": "OLDAP-2.8 AND MIT",
+ "licenseDeclared": "OLDAP-2.8 AND MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/mbstring/ucgendat/ucgendat.php; source digest SHA-256 (file-content-v1): 572651bf88b0d2a10f16ff41191ecb385a37e6102a12117597bc7523e0bad968",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "572651bf88b0d2a10f16ff41191ecb385a37e6102a12117597bc7523e0bad968"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/openldap-ucgendat"
+ }
+ ]
+ },
+ {
+ "name": "pcre2lib",
+ "SPDXID": "SPDXRef-Source-pcre2lib-10.44-15",
+ "versionInfo": "10.44",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/pcre/pcre2lib",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause WITH PCRE2-exception",
+ "licenseDeclared": "BSD-3-Clause WITH PCRE2-exception",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/pcre/pcre2lib; source digest SHA-256 (relative-path-and-file-sha256-v1): 707a215120b9b27c3f80c75557b88de1890ea9e16212324fa87ddcede3e53d95",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "707a215120b9b27c3f80c75557b88de1890ea9e16212324fa87ddcede3e53d95"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/pcre2@10.44"
+ }
+ ]
+ },
+ {
+ "name": "snprintf",
+ "SPDXID": "SPDXRef-Source-snprintf-snapshot-42618fe2e789-16",
+ "versionInfo": "snapshot-42618fe2e789",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/main/snprintf.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "ISC AND Apache-1.0",
+ "licenseDeclared": "ISC AND Apache-1.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at main/snprintf.c; source digest SHA-256 (file-content-v1): 42618fe2e789fed999fc4d6b832991db42d45314240fe6d7da72f66867623ff6",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "42618fe2e789fed999fc4d6b832991db42d45314240fe6d7da72f66867623ff6"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/snprintf"
+ }
+ ]
+ },
+ {
+ "name": "strlcat",
+ "SPDXID": "SPDXRef-Source-strlcat-snapshot-d2244e6a54fe-17",
+ "versionInfo": "snapshot-d2244e6a54fe",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/main/strlcat.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at main/strlcat.c; source digest SHA-256 (file-content-v1): d2244e6a54fead4265249866946ac7fb5050676fefe683110dbb965ea9a6dce8",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "d2244e6a54fead4265249866946ac7fb5050676fefe683110dbb965ea9a6dce8"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/strlcat"
+ }
+ ]
+ },
+ {
+ "name": "strlcpy",
+ "SPDXID": "SPDXRef-Source-strlcpy-snapshot-144d697952d1-18",
+ "versionInfo": "snapshot-144d697952d1",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/main/strlcpy.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at main/strlcpy.c; source digest SHA-256 (file-content-v1): 144d697952d109c4876660691033dcbe12b9c6124732199c56f31a02422884a6",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "144d697952d109c4876660691033dcbe12b9c6124732199c56f31a02422884a6"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/strlcpy"
+ }
+ ]
+ },
+ {
+ "name": "strnatcmp",
+ "SPDXID": "SPDXRef-Source-strnatcmp-snapshot-e14f21965b39-19",
+ "versionInfo": "snapshot-e14f21965b39",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/standard/strnatcmp.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Zlib",
+ "licenseDeclared": "Zlib",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/standard/strnatcmp.c; source digest SHA-256 (file-content-v1): e14f21965b3924bc2231a1f638f990e1b2497b0e4fd51ec50f822837bed9bf68",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "e14f21965b3924bc2231a1f638f990e1b2497b0e4fd51ec50f822837bed9bf68"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/strnatcmp"
+ }
+ ]
+ },
+ {
+ "name": "Tcl scanf implementation",
+ "SPDXID": "SPDXRef-Source-Tcl-scanf-implementation-8.3.0-20",
+ "versionInfo": "8.3.0",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/standard/scanf.c",
+ "filesAnalyzed": false,
+ "licenseConcluded": "TCL",
+ "licenseDeclared": "TCL",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/standard/scanf.c; source digest SHA-256 (file-content-v1): b8fc92fa954fdb70a31307312c5c50335d37fa2c35ff30560e7590010ffe36e1",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "b8fc92fa954fdb70a31307312c5c50335d37fa2c35ff30560e7590010ffe36e1"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/tcl-scanf@8.3.0"
+ }
+ ]
+ },
+ {
+ "name": "timelib",
+ "SPDXID": "SPDXRef-Source-timelib-2022.17-21",
+ "versionInfo": "2022.17",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/date/lib",
+ "filesAnalyzed": false,
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/date/lib; source digest SHA-256 (relative-path-and-file-sha256-v1): 2210ee5ba51e09e82e37c7703f661704c412ca918612c9fcb44650dc4e2a873e",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "2210ee5ba51e09e82e37c7703f661704c412ca918612c9fcb44650dc4e2a873e"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/timelib@2022.17"
+ }
+ ]
+ },
+ {
+ "name": "XKCP SHA-3",
+ "SPDXID": "SPDXRef-Source-XKCP-SHA-3-snapshot-aba3170bb6e1-22",
+ "versionInfo": "snapshot-aba3170bb6e1",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/hash/sha3",
+ "filesAnalyzed": false,
+ "licenseConcluded": "CC0-1.0 AND Brian-Gladman-3-Clause",
+ "licenseDeclared": "CC0-1.0 AND Brian-Gladman-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/hash/sha3; source digest SHA-256 (relative-path-and-file-sha256-v1): aba3170bb6e15ba1bddf0d346e580d3f96c954ac252fe05f888c038cdcda735a",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "aba3170bb6e15ba1bddf0d346e580d3f96c954ac252fe05f888c038cdcda735a"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/xkcp-sha3"
+ }
+ ]
+ },
+ {
+ "name": "xxHash",
+ "SPDXID": "SPDXRef-Source-xxHash-0.8.1-23",
+ "versionInfo": "0.8.1",
+ "downloadLocation": "https://github.com/php/php-src/tree/php-8.5.10/ext/hash/xxhash",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-2-Clause",
+ "licenseDeclared": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: PHP Group",
+ "originator": "NOASSERTION",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Bundled in php-8.5.10 source tree at ext/hash/xxhash; source digest SHA-256 (relative-path-and-file-sha256-v1): 758cc817eb2636dde0c0213b8df1f7e1ba60a4adb3f07b4a62c89223d3f5207d",
+ "checksums": [
+ {
+ "algorithm": "SHA256",
+ "checksumValue": "758cc817eb2636dde0c0213b8df1f7e1ba60a4adb3f07b4a62c89223d3f5207d"
+ }
+ ],
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/xxhash@0.8.1"
+ }
+ ]
+ },
+ {
+ "name": "ICU",
+ "SPDXID": "SPDXRef-Dependency-ICU-77.1-1-24",
+ "versionInfo": "77.1-1",
+ "packageFileName": "ICU-77.1-1-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/ICU-77.1-1-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Unicode-DFS-2016",
+ "licenseDeclared": "Unicode-DFS-2016",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: unicode-org",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/icu@77.1"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/unicode-org/icu"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/unicode-org/icu/tree/release-77-1"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/icu4c.git@11bca20cc331c2ad3d38e240e5921ebfad8fe523"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:24:20Z",
+ "comment": "source-origin=winlibs-fork; upstream=unicode-org/icu@release-77-1; source=winlibs/icu4c@icu4c-77.1-1; source-commit=11bca20cc331c2ad3d38e240e5921ebfad8fe523"
+ }
+ ]
+ },
+ {
+ "name": "apache",
+ "SPDXID": "SPDXRef-Dependency-apache-2.4.68-25",
+ "versionInfo": "2.4.68",
+ "packageFileName": "apache-2.4.68-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/apache-2.4.68-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: apache",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/apache-httpd@2.4.68"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:apache:http_server:2.4.68:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/apache/httpd"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/apache/httpd/tree/2.4.68"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/apache/httpd.git@736bb657405eb73fd68a64772c3a908807bdb887"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-18T08:34:11Z",
+ "comment": "source-origin=upstream; upstream=apache/httpd@2.4.68; source=apache/httpd@2.4.68; source-commit=736bb657405eb73fd68a64772c3a908807bdb887; not-affected-cves=CVE-1999-0289,CVE-1999-0678,CVE-2025-3891"
+ }
+ ]
+ },
+ {
+ "name": "apr-iconv",
+ "SPDXID": "SPDXRef-Dependency-apr-iconv-1.2.2-26",
+ "versionInfo": "1.2.2",
+ "downloadLocation": "https://github.com/apache/apr-iconv/tree/1.2.2",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: apache",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Embedded from apr-iconv-source/apr-iconv-1.2.2.",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/apr-iconv@1.2.2"
+ }
+ ]
+ },
+ {
+ "name": "apr-util",
+ "SPDXID": "SPDXRef-Dependency-apr-util-1.6.3-27",
+ "versionInfo": "1.6.3",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/apr-util",
+ "homepage": "https://apr.apache.org/",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "NOASSERTION",
+ "description": "Apache Portable Runtime (APR) project mission is to create and maintain software libraries that provide a predictable and consistent interface to underlying platform-specific implementation",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/apr-util"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "apr-util:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-apr-util-x64-windows-c0221bb1ebe3af251a9b9a69917701cf75f2bbfafabb4c88ee331dba0aad8dcd-28",
+ "versionInfo": "c0221bb1ebe3af251a9b9a69917701cf75f2bbfafabb4c88ee331dba0aad8dcd",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-apr-util-1.6.3.tar.bz2-1.6.3-29",
+ "name": "apr-util-1.6.3.tar.bz2",
+ "packageFileName": "apr-util-1.6.3.tar.bz2",
+ "downloadLocation": "https://archive.apache.org/dist/apr/apr-util-1.6.3.tar.bz2",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "8050a481eeda7532ef3751dbd8a5aa6c48354d52904a856ef9709484f4b0cc2e022661c49ddf55ec58253db22708ee0607dfa7705d9270e8fee117ae4f06a0fe"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "1.6.3",
+ "supplier": "Organization: Apache Software Foundation",
+ "licenseConcluded": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "apr",
+ "SPDXID": "SPDXRef-Dependency-apr-1.7.6-1-30",
+ "versionInfo": "1.7.6#1",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/apr",
+ "homepage": "https://apr.apache.org/",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "NOASSERTION",
+ "description": "The Apache Portable Runtime (APR) is a C library that forms a system portability layer that covers many operating systems.",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/apr"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "apr:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-apr-x64-windows-03919ccf3f69b15eba8f04368099f5d3dc5c23ed3526015ec9137984d41c4fad-31",
+ "versionInfo": "03919ccf3f69b15eba8f04368099f5d3dc5c23ed3526015ec9137984d41c4fad",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-apr-1.7.6.tar.bz2-1.7.6-32",
+ "name": "apr-1.7.6.tar.bz2",
+ "packageFileName": "apr-1.7.6.tar.bz2",
+ "downloadLocation": "https://downloads.apache.org/apr/apr-1.7.6.tar.bz2",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "629b60680d1244641828019db903a1b199e8a19c8f27a5132b93faacb381ce561f88463345ab019258f1f1e8cfdf8aa986ac815153a8e7e04a22b3932f9fedd2"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "1.7.6",
+ "supplier": "Organization: Apache Software Foundation",
+ "licenseConcluded": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "brotli",
+ "SPDXID": "SPDXRef-Dependency-brotli-1.2.0-33",
+ "versionInfo": "1.2.0",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/brotli",
+ "homepage": "https://github.com/google/brotli",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "description": "a generic-purpose lossless compression algorithm that compresses data using a combination of a modern variant of the LZ77 algorithm, Huffman coding and 2nd order context modeling.",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/brotli"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "brotli:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-brotli-x64-windows-45a3ef2859dd01b67fd278f7750b1e843fcc4554fd5350940963f48da31a7426-34",
+ "versionInfo": "45a3ef2859dd01b67fd278f7750b1e843fcc4554fd5350940963f48da31a7426",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-google-brotli-1.2.0-35",
+ "name": "google/brotli",
+ "downloadLocation": "git+https://github.com/google/brotli@v1.2.0",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "f94542afd2ecd96cc41fd21a805a3da314281ae558c10650f3e6d9ca732b8425bba8fde312823f0a564c7de3993bdaab5b43378edab65ebb798cefb6fd702256"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "1.2.0",
+ "supplier": "Organization: google",
+ "licenseConcluded": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "curl",
+ "SPDXID": "SPDXRef-Dependency-curl-8.21.0-1-36",
+ "versionInfo": "8.21.0#1",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/curl",
+ "homepage": "https://curl.se/",
+ "licenseConcluded": "BSD-3-Clause AND ISC AND curl",
+ "licenseDeclared": "NOASSERTION",
+ "description": "A library for transferring data with URLs",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/curl"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "curl:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-curl-x64-windows-ea772160a9dd49cf8c0365727979d54a2593b7e9b057572af2174857bd60016e-37",
+ "versionInfo": "ea772160a9dd49cf8c0365727979d54a2593b7e9b057572af2174857bd60016e",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "BSD-3-Clause AND ISC AND curl",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-curl-curl-8.21.0-38",
+ "name": "curl/curl",
+ "downloadLocation": "git+https://github.com/curl/curl@${curl_version}",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "0ab6c99c3d5b86fb65c526db517c3159b11db2f8d82552d635c4887059c0602288603c93b754ce0ec543ea2f275122ccec2c8dcd866c2611b5b949c728ee72df"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "8.21.0",
+ "supplier": "Organization: curl",
+ "licenseConcluded": "BSD-3-Clause AND ISC AND curl",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "expat",
+ "SPDXID": "SPDXRef-Dependency-expat-2.8.2-39",
+ "versionInfo": "2.8.2",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/expat",
+ "homepage": "https://github.com/libexpat/libexpat",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "description": "XML parser library written in C",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/expat"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "expat:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-expat-x64-windows-c1722303603d771cc7dd274c0d811b2d1f3caf311b6117a74e9ef24bd7c7a1e6-40",
+ "versionInfo": "c1722303603d771cc7dd274c0d811b2d1f3caf311b6117a74e9ef24bd7c7a1e6",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-libexpat-libexpat-2.8.2-41",
+ "name": "libexpat/libexpat",
+ "downloadLocation": "git+https://github.com/libexpat/libexpat@${REF}",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "e60e6d6ae9d0115f41186f06f3854008054863f0b29a58d44142f5b30057a494337145d820b5e18270b8ca3e779e318a757fcc6bf64d6d204e5498df5eeb2195"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "2.8.2",
+ "supplier": "Organization: libexpat",
+ "licenseConcluded": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "jansson",
+ "SPDXID": "SPDXRef-Dependency-jansson-2.15.1-42",
+ "versionInfo": "2.15.1",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/jansson",
+ "homepage": "https://github.com/akheron/jansson",
+ "licenseConcluded": "MIT AND dtoa",
+ "licenseDeclared": "NOASSERTION",
+ "description": "Jansson is a C library for encoding, decoding and manipulating JSON data",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/jansson"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "jansson:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-jansson-x64-windows-678d7ad3250826f28d4b77b4c2ef87cb6b02d5dfb8d29c14eeac3f5cf5a1ced4-43",
+ "versionInfo": "678d7ad3250826f28d4b77b4c2ef87cb6b02d5dfb8d29c14eeac3f5cf5a1ced4",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "MIT AND dtoa",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-akheron-jansson-2.15.1-44",
+ "name": "akheron/jansson",
+ "downloadLocation": "git+https://github.com/akheron/jansson@v2.15.1",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "233f154e1f55f395bffa7c946e56995913248138541fa093abc5317a23096d1f58b8e594fcff94918d0db2f15a96652554bb429949661534b65d0569c29b52d9"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "2.15.1",
+ "supplier": "Organization: akheron",
+ "licenseConcluded": "MIT AND dtoa",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "lua",
+ "SPDXID": "SPDXRef-Dependency-lua-5.5.0-1-45",
+ "versionInfo": "5.5.0#1",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/lua",
+ "homepage": "https://www.lua.org",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "description": "A powerful, fast, lightweight, embeddable scripting language",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/lua"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "lua:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-lua-x64-windows-e8f14584d48e1c2107547c9f22b9a9eccf73691b4aa033d797703ff440500676-46",
+ "versionInfo": "e8f14584d48e1c2107547c9f22b9a9eccf73691b4aa033d797703ff440500676",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-lua-5.5.0.tar.gz-5.5.0-47",
+ "name": "lua-5.5.0.tar.gz",
+ "packageFileName": "lua-5.5.0.tar.gz",
+ "downloadLocation": "https://www.lua.org/ftp/lua-5.5.0.tar.gz",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "3253d2cdc929da6438095a30d66ef16a1abdbb0ada8fee238705b3b38492f14be9553640fdca6b25661e01155ba5582032e0a2ef064e4c283e85efc0a128cabe"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "5.5.0",
+ "supplier": "Organization: Lua.org",
+ "licenseConcluded": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "nghttp2",
+ "SPDXID": "SPDXRef-Dependency-nghttp2-1.69.0-48",
+ "versionInfo": "1.69.0",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/nghttp2",
+ "homepage": "https://github.com/nghttp2/nghttp2",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "description": "Implementation of the Hypertext Transfer Protocol version 2 in C",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/nghttp2"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "nghttp2:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-nghttp2-x64-windows-1ea9da733d3d49024dff92b30043ee27dba59373816942b3d8c986b8a5edb676-49",
+ "versionInfo": "1ea9da733d3d49024dff92b30043ee27dba59373816942b3d8c986b8a5edb676",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-nghttp2-nghttp2-1.69.0-50",
+ "name": "nghttp2/nghttp2",
+ "downloadLocation": "git+https://github.com/nghttp2/nghttp2@v1.69.0",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "1029fb86935a88fc518cc2d976dff5253277f97e01f32b1f73c5df96dcf7fe0280a83a9e9d676c3d96caa542300dc7cfa61f2a40b1b11d2c2b527e870a974b53"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "1.69.0",
+ "supplier": "Organization: nghttp2",
+ "licenseConcluded": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "openssl",
+ "SPDXID": "SPDXRef-Dependency-openssl-3.6.3-51",
+ "versionInfo": "3.6.3",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/openssl",
+ "homepage": "https://www.openssl.org",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "NOASSERTION",
+ "description": "OpenSSL is an open source project that provides a robust, commercial-grade, and full-featured toolkit for the Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols. It is also a general-purpose cryptography library.",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/openssl"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "openssl:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-openssl-x64-windows-8ebeacc935df08d9d1c210b16ef5af918196229f49850b57a60b800802600677-52",
+ "versionInfo": "8ebeacc935df08d9d1c210b16ef5af918196229f49850b57a60b800802600677",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-openssl-openssl-3.6.3-53",
+ "name": "openssl/openssl",
+ "downloadLocation": "git+https://github.com/openssl/openssl@openssl-3.6.3",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "a89c08101fa1d7e3c09b14f4a90d450bcf336a4f6a3e6e4ea990e4deddcd9ce250472f9114438fd134ff4b47fe93dd47232308567088b2b1c0b2eb50e3b56bdf"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "3.6.3",
+ "supplier": "Organization: openssl",
+ "licenseConcluded": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "pcre2",
+ "SPDXID": "SPDXRef-Dependency-pcre2-10.47-1-54",
+ "versionInfo": "10.47#1",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/pcre2",
+ "homepage": "https://github.com/PCRE2Project/pcre2",
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "NOASSERTION",
+ "description": "Regular Expression pattern matching using the same syntax and semantics as Perl 5.",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/pcre2"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "pcre2:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-pcre2-x64-windows-1b0a3280c093bfad0beafbc16e9be01ee86d1064a85163ebb3afc7b0a5339ddc-55",
+ "versionInfo": "1b0a3280c093bfad0beafbc16e9be01ee86d1064a85163ebb3afc7b0a5339ddc",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-PCRE2Project-pcre2-10.47-56",
+ "name": "PCRE2Project/pcre2",
+ "downloadLocation": "git+https://github.com/PCRE2Project/pcre2@pcre2-10.47",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "4deef8ce95711e65fe07624e6b2aace794594adb15e8363a0279a7b947bf5c75a5858fbdc5251d0a28a7ca97ae8bba561aa5f85805d5c07d417d3e7b3b3486a4"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "10.47",
+ "supplier": "Organization: PCRE2Project",
+ "licenseConcluded": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-zherczeg-sljit-45f910b78c6605ebf5b53d3ec7cb00f2312fe417-57",
+ "name": "zherczeg/sljit",
+ "downloadLocation": "git+https://github.com/zherczeg/sljit@45f910b78c6605ebf5b53d3ec7cb00f2312fe417",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "c05c83cc762f430c01e2aaf876aaac41a70b67ed8b91bc81102ad527c8921c5e75b41bab35bb8237dd5f53fecd7b8f31206865efffce2ea0a1aa9c87079fc643"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "45f910b78c6605ebf5b53d3ec7cb00f2312fe417",
+ "supplier": "Person: Zoltan Herczeg",
+ "licenseConcluded": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "zlib",
+ "SPDXID": "SPDXRef-Dependency-zlib-1.3.2-1-58",
+ "versionInfo": "1.3.2#1",
+ "downloadLocation": "git+https://github.com/Microsoft/vcpkg#ports/zlib",
+ "homepage": "https://www.zlib.net/",
+ "licenseConcluded": "Zlib",
+ "licenseDeclared": "NOASSERTION",
+ "description": "A compression library",
+ "comment": "This is the port (recipe) consumed by vcpkg.",
+ "primaryPackagePurpose": "SOURCE",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:github/microsoft/vcpkg#ports/zlib"
+ }
+ ],
+ "supplier": "Organization: Microsoft",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "zlib:x64-windows",
+ "SPDXID": "SPDXRef-Dependency-zlib-x64-windows-5ae23b0077d1eaea33185c69c114d098231e93cc7d2c77a8123d625ddd85c44b-59",
+ "versionInfo": "5ae23b0077d1eaea33185c69c114d098231e93cc7d2c77a8123d625ddd85c44b",
+ "downloadLocation": "NONE",
+ "licenseConcluded": "Zlib",
+ "licenseDeclared": "NOASSERTION",
+ "comment": "This is a binary package built by vcpkg.",
+ "primaryPackagePurpose": "LIBRARY",
+ "supplier": "Organization: Winlibs",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "SPDXID": "SPDXRef-Dependency-madler-zlib-1.3.2-60",
+ "name": "madler/zlib",
+ "downloadLocation": "git+https://github.com/madler/zlib@v1.3.2",
+ "licenseDeclared": "NOASSERTION",
+ "checksums": [
+ {
+ "algorithm": "SHA512",
+ "checksumValue": "16fea4df307a68cf0035858abe2fd550250618a97590e202037acd18a666f57afc10f8836cbbd472d54a0e76539d0e558cb26f059d53de52ff90634bbf4f47d4"
+ }
+ ],
+ "primaryPackagePurpose": "SOURCE",
+ "versionInfo": "1.3.2",
+ "supplier": "Organization: madler",
+ "licenseConcluded": "Zlib",
+ "copyrightText": "See accompanying license and notice files.",
+ "filesAnalyzed": false
+ },
+ {
+ "name": "brotli",
+ "SPDXID": "SPDXRef-Dependency-brotli-1.2.0-61",
+ "versionInfo": "1.2.0",
+ "packageFileName": "brotli-1.2.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/brotli-1.2.0-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: google",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/brotli@1.2.0"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:google:brotli:1.2.0:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/google/brotli"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/google/brotli/tree/v1.2.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/google/brotli.git@028fb5a23661f123017c060daa546b55cf4bde29"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:18:39Z",
+ "comment": "source-origin=upstream; upstream=google/brotli@v1.2.0; source=google/brotli@v1.2.0; source-commit=028fb5a23661f123017c060daa546b55cf4bde29"
+ }
+ ]
+ },
+ {
+ "name": "fbclient",
+ "SPDXID": "SPDXRef-Dependency-fbclient-4.0.7-62",
+ "versionInfo": "4.0.7",
+ "packageFileName": "fbclient-4.0.7-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/fbclient-4.0.7-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Interbase-1.0 AND LicenseRef-fbclient-IDPL-1.0",
+ "licenseDeclared": "Interbase-1.0 AND LicenseRef-fbclient-IDPL-1.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: FirebirdSQL",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/firebird@4.0.7"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/FirebirdSQL/firebird"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/FirebirdSQL/firebird/tree/v4.0.7"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:09Z",
+ "comment": "source-origin=upstream; upstream=FirebirdSQL/firebird@v4.0.7; source=FirebirdSQL/firebird@v4.0.7"
+ }
+ ]
+ },
+ {
+ "name": "freetype",
+ "SPDXID": "SPDXRef-Dependency-freetype-2.14.3-63",
+ "versionInfo": "2.14.3",
+ "packageFileName": "freetype-2.14.3-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/freetype-2.14.3-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "FTL OR GPL-2.0-or-later",
+ "licenseDeclared": "FTL OR GPL-2.0-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: freetype",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/freetype@2.14.3"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:freetype:freetype:2.14.3:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/freetype/freetype"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/freetype/freetype/tree/VER-2-14-3"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/freetype.git@3d8e776a1f1800dea07d433e20c91e8a9a161c4f"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:25Z",
+ "comment": "source-origin=winlibs-fork; upstream=freetype/freetype@VER-2-14-3; source=winlibs/freetype@freetype-2.14.3; source-commit=3d8e776a1f1800dea07d433e20c91e8a9a161c4f"
+ }
+ ]
+ },
+ {
+ "name": "glib",
+ "SPDXID": "SPDXRef-Dependency-glib-2.88.3-64",
+ "versionInfo": "2.88.3",
+ "packageFileName": "glib-2.88.3-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/glib-2.88.3-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-2.1-or-later",
+ "licenseDeclared": "LGPL-2.1-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: GNOME",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/glib@2.88.3"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:gnome:glib:2.88.3:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/GNOME/glib"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/GNOME/glib/tree/2.88.3"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/glib.git@ca9d6adf53e11099045a6d51116dd0b678faa1f3"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-17T14:01:39Z",
+ "comment": "source-origin=winlibs-fork; upstream=GNOME/glib@2.88.3; source=winlibs/glib@glib-2.88.3; source-commit=ca9d6adf53e11099045a6d51116dd0b678faa1f3"
+ }
+ ]
+ },
+ {
+ "name": "libffi",
+ "SPDXID": "SPDXRef-Dependency-libffi-3.8.0-65",
+ "versionInfo": "3.8.0",
+ "packageFileName": "libffi-3.8.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libffi-3.8.0-vs17-x64.zip",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: libffi",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libffi@3.8.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libffi/libffi"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libffi/libffi/tree/v3.8.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libffi.git@30ae078e9dbf2cb36de5db54b9740e89d8ff52e1"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-17T13:56:43Z",
+ "comment": "source-origin=winlibs-fork; upstream=libffi/libffi@v3.8.0; source=winlibs/libffi@libffi-3.8.0; source-commit=30ae078e9dbf2cb36de5db54b9740e89d8ff52e1"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "libintl",
+ "SPDXID": "SPDXRef-Dependency-libintl-1.0-66",
+ "versionInfo": "1.0",
+ "packageFileName": "libintl-1.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libintl-1.0-vs17-x64.zip",
+ "licenseConcluded": "LGPL-2.1-or-later",
+ "licenseDeclared": "LGPL-2.1-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: git.savannah.gnu.org",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/gettext@1.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://git.savannah.gnu.org/git/gettext.git"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://git.savannah.gnu.org/git/gettext.git"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/gettext.git@cd6fcaeffc493305f9c0081310efa0e063060da6"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:27:45Z",
+ "comment": "source-origin=winlibs-fork; upstream=https://git.savannah.gnu.org/git/gettext.git@v1.0; source=winlibs/gettext@libintl-1.0; source-commit=cd6fcaeffc493305f9c0081310efa0e063060da6"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "zlib",
+ "SPDXID": "SPDXRef-Dependency-zlib-1.3.2-67",
+ "versionInfo": "1.3.2",
+ "packageFileName": "zlib-1.3.2-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/zlib-1.3.2-vs17-x64.zip",
+ "licenseConcluded": "Zlib",
+ "licenseDeclared": "Zlib",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: madler",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/zlib@1.3.2"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:zlib:zlib:1.3.2:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/madler/zlib"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/madler/zlib/tree/v1.3.2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/zlib.git@0089522e62e6b5d4950e62bd20f0cb06a9288413"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:20:34Z",
+ "comment": "source-origin=winlibs-fork; upstream=madler/zlib@v1.3.2; source=winlibs/zlib@zlib-1.3.2; source-commit=0089522e62e6b5d4950e62bd20f0cb06a9288413"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "libargon2",
+ "SPDXID": "SPDXRef-Dependency-libargon2-20190702-68",
+ "versionInfo": "20190702",
+ "packageFileName": "libargon2-20190702-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libargon2-20190702-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "CC0-1.0",
+ "licenseDeclared": "CC0-1.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: P-H-C",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libargon2@20190702"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/P-H-C/phc-winner-argon2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/P-H-C/phc-winner-argon2/tree/20190702"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/argon2.git@fb53ef37be212380d51877b70f514f3bf2c1ee40"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:20:00Z",
+ "comment": "source-origin=winlibs-fork; upstream=P-H-C/phc-winner-argon2@20190702; source=winlibs/argon2@libargon2-20190702; source-commit=fb53ef37be212380d51877b70f514f3bf2c1ee40"
+ }
+ ]
+ },
+ {
+ "name": "libavif",
+ "SPDXID": "SPDXRef-Dependency-libavif-1.4.2-69",
+ "versionInfo": "1.4.2",
+ "packageFileName": "libavif-1.4.2-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libavif-1.4.2-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-2-Clause",
+ "licenseDeclared": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: AOMediaCodec",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libavif@1.4.2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/AOMediaCodec/libavif"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/AOMediaCodec/libavif/tree/v1.4.2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libavif.git@14976153789c7ebf2ca24b22215a964bbc5be213"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-31T23:23:55Z",
+ "comment": "source-origin=winlibs-fork; upstream=AOMediaCodec/libavif@v1.4.2; source=winlibs/libavif@libavif-1.4.2; source-commit=14976153789c7ebf2ca24b22215a964bbc5be213"
+ }
+ ]
+ },
+ {
+ "name": "aom",
+ "SPDXID": "SPDXRef-Dependency-aom-3.14.1-70",
+ "versionInfo": "3.14.1",
+ "downloadLocation": "https://aomedia.googlesource.com/aom/+/refs/tags/v3.14.1",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: aomedia.googlesource.com",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Embedded from libavif/ext/aom.",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/aom@3.14.1"
+ }
+ ]
+ },
+ {
+ "name": "libbzip2",
+ "SPDXID": "SPDXRef-Dependency-libbzip2-1.0.8-1-71",
+ "versionInfo": "1.0.8-1",
+ "packageFileName": "libbzip2-1.0.8-1-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libbzip2-1.0.8-1-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "bzip2-1.0.6",
+ "licenseDeclared": "bzip2-1.0.6",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: libarchive",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/bzip2@1.0.8"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libarchive/bzip2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libarchive/bzip2/tree/bzip2-1.0.8"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libbzip2.git@99d3c4812e2b98bc305ae4b867f35346946717f0"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:18:19Z",
+ "comment": "source-origin=winlibs-fork; upstream=libarchive/bzip2@bzip2-1.0.8; source=winlibs/libbzip2@libbzip2-1.0.8-1; source-commit=99d3c4812e2b98bc305ae4b867f35346946717f0"
+ }
+ ]
+ },
+ {
+ "name": "libcurl",
+ "SPDXID": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "versionInfo": "8.21.0-1",
+ "packageFileName": "libcurl-8.21.0-1-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libcurl-8.21.0-1-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "curl",
+ "licenseDeclared": "curl",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: curl",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/curl@8.21.0"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:haxx:curl:8.21.0:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/curl/curl"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/curl/curl/tree/curl-8_21_0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/curl.git@b49adb2e4efd37ca3f76e8a80d16c3e2c5efdab0"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-17T13:29:21Z",
+ "comment": "source-origin=winlibs-fork; upstream=curl/curl@curl-8_21_0; source=winlibs/curl@libcurl-8.21.0-1; source-commit=b49adb2e4efd37ca3f76e8a80d16c3e2c5efdab0"
+ }
+ ]
+ },
+ {
+ "name": "libssh2",
+ "SPDXID": "SPDXRef-Dependency-libssh2-1.11.1-7-73",
+ "versionInfo": "1.11.1-7",
+ "packageFileName": "libssh2-1.11.1-7-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libssh2-1.11.1-7-vs17-x64.zip",
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: libssh2",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libssh2@1.11.1"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:libssh2:libssh2:1.11.1:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libssh2/libssh2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libssh2/libssh2/tree/libssh2-1.11.1"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libssh2.git@7817741ff29d52165b0e8c157acbe4c0ec582117"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-02T09:28:50Z",
+ "comment": "source-origin=winlibs-fork; upstream=libssh2/libssh2@libssh2-1.11.1; source=winlibs/libssh2@libssh2-1.11.1-7; source-commit=7817741ff29d52165b0e8c157acbe4c0ec582117; fixed-cves=CVE-2026-7598,CVE-2025-15661,CVE-2026-55199,CVE-2026-55200,CVE-2026-58050,CVE-2026-58051,CVE-2026-66032,CVE-2026-66033,CVE-2026-66034,CVE-2026-66035"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "openssl",
+ "SPDXID": "SPDXRef-Dependency-openssl-3.5.7-74",
+ "versionInfo": "3.5.7",
+ "packageFileName": "openssl-3.5.7-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openssl-3.5.7-vs17-x64.zip",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: openssl",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/openssl@3.5.7"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:openssl:openssl:3.5.7:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/openssl/openssl"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/openssl/openssl/tree/openssl-3.5.7"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/openssl.git@07444295ce1ca3175b58a18c9da732c14393161e"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:50:44Z",
+ "comment": "source-origin=winlibs-fork; upstream=openssl/openssl@openssl-3.5.7; source=winlibs/openssl@openssl-3.5.7; source-commit=07444295ce1ca3175b58a18c9da732c14393161e"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "libzstd",
+ "SPDXID": "SPDXRef-Dependency-libzstd-1.5.7-75",
+ "versionInfo": "1.5.7",
+ "packageFileName": "libzstd-1.5.7-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libzstd-1.5.7-vs17-x64.zip",
+ "licenseConcluded": "BSD-3-Clause OR GPL-2.0-only",
+ "licenseDeclared": "BSD-3-Clause OR GPL-2.0-only",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: facebook",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/zstd@1.5.7"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/facebook/zstd"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/facebook/zstd/tree/v1.5.7"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/facebook/zstd.git@f8745da6ff1ad1e7bab384bd1f9d742439278e99"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:47Z",
+ "comment": "source-origin=upstream; upstream=facebook/zstd@v1.5.7; source=facebook/zstd@v1.5.7; source-commit=f8745da6ff1ad1e7bab384bd1f9d742439278e99"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "nghttp2",
+ "SPDXID": "SPDXRef-Dependency-nghttp2-1.70.0-76",
+ "versionInfo": "1.70.0",
+ "packageFileName": "nghttp2-1.70.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/nghttp2-1.70.0-vs17-x64.zip",
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: nghttp2",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/nghttp2@1.70.0"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:nghttp2:nghttp2:1.70.0:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/nghttp2/nghttp2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/nghttp2/nghttp2/tree/v1.70.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/nghttp2.git@50895b5f3cebeb2553a4e40a62561707a1a129e0"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-17T13:25:27Z",
+ "comment": "source-origin=winlibs-fork; upstream=nghttp2/nghttp2@v1.70.0; source=winlibs/nghttp2@nghttp2-1.70.0; source-commit=50895b5f3cebeb2553a4e40a62561707a1a129e0"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "libenchant2",
+ "SPDXID": "SPDXRef-Dependency-libenchant2-2.8.19-77",
+ "versionInfo": "2.8.19",
+ "packageFileName": "libenchant2-2.8.19-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libenchant2-2.8.19-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-2.1-or-later",
+ "licenseDeclared": "LGPL-2.1-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: AbiWord",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/enchant@2.8.19"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/AbiWord/enchant"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/AbiWord/enchant/tree/v2.8.19"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/enchant.git@37e09ab3d76d61784d8a9d4cca2badbd56d080f4"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-17T14:14:15Z",
+ "comment": "source-origin=winlibs-fork; upstream=AbiWord/enchant@v2.8.19; source=winlibs/enchant@libenchant2-2.8.19; source-commit=37e09ab3d76d61784d8a9d4cca2badbd56d080f4"
+ }
+ ]
+ },
+ {
+ "name": "libiconv",
+ "SPDXID": "SPDXRef-Dependency-libiconv-1.19-78",
+ "versionInfo": "1.19",
+ "packageFileName": "libiconv-1.19-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libiconv-1.19-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-2.1-or-later",
+ "licenseDeclared": "LGPL-2.1-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: git.savannah.gnu.org",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libiconv@1.19"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://git.savannah.gnu.org/git/libiconv.git"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://git.savannah.gnu.org/git/libiconv.git"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libiconv.git@8f55a0aa6532f30f947261d90e72b200f350a5df"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:18:18Z",
+ "comment": "source-origin=winlibs-fork; upstream=https://git.savannah.gnu.org/git/libiconv.git@v1.19; source=winlibs/libiconv@libiconv-1.19; source-commit=8f55a0aa6532f30f947261d90e72b200f350a5df"
+ }
+ ]
+ },
+ {
+ "name": "libjpeg-turbo",
+ "SPDXID": "SPDXRef-Dependency-libjpeg-turbo-3.2.0-79",
+ "versionInfo": "3.2.0",
+ "packageFileName": "libjpeg-turbo-3.2.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libjpeg-turbo-3.2.0-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause AND IJG",
+ "licenseDeclared": "BSD-3-Clause AND IJG",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: libjpeg-turbo",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libjpeg-turbo@3.2.0"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:libjpeg-turbo:libjpeg-turbo:3.2.0:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libjpeg-turbo/libjpeg-turbo"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/libjpeg-turbo/libjpeg-turbo/tree/3.2.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libjpeg.git@66ef88ad97f3c47eb1c7b85f2637ff1073ebce9b"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-04T04:08:54Z",
+ "comment": "source-origin=winlibs-fork; upstream=libjpeg-turbo/libjpeg-turbo@3.2.0; source=winlibs/libjpeg@libjpeg-turbo-3.2.0; source-commit=66ef88ad97f3c47eb1c7b85f2637ff1073ebce9b"
+ }
+ ]
+ },
+ {
+ "name": "liblmdb",
+ "SPDXID": "SPDXRef-Dependency-liblmdb-0.9.35-80",
+ "versionInfo": "0.9.35",
+ "packageFileName": "liblmdb-0.9.35-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/liblmdb-0.9.35-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "OLDAP-2.8",
+ "licenseDeclared": "OLDAP-2.8",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: LMDB",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/lmdb@0.9.35"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/LMDB/lmdb"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/LMDB/lmdb/tree/LMDB_0.9.35"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/lmdb.git@337459047d55fbf52e634bc26285195d06ac145d"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:09Z",
+ "comment": "source-origin=winlibs-fork; upstream=LMDB/lmdb@LMDB_0.9.35; source=winlibs/lmdb@liblmdb-0.9.35; source-commit=337459047d55fbf52e634bc26285195d06ac145d"
+ }
+ ]
+ },
+ {
+ "name": "liblzma",
+ "SPDXID": "SPDXRef-Dependency-liblzma-5.8.3-81",
+ "versionInfo": "5.8.3",
+ "packageFileName": "liblzma-5.8.3-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/liblzma-5.8.3-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "0BSD",
+ "licenseDeclared": "0BSD",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: tukaani-project",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/xz@5.8.3"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/tukaani-project/xz"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/tukaani-project/xz/tree/v5.8.3"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/liblzma.git@debf994b6385f384f01815eaac4597e3c2e2cc4e"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:21:05Z",
+ "comment": "source-origin=winlibs-fork; upstream=tukaani-project/xz@v5.8.3; source=winlibs/liblzma@liblzma-5.8.3; source-commit=debf994b6385f384f01815eaac4597e3c2e2cc4e"
+ }
+ ]
+ },
+ {
+ "name": "libonig",
+ "SPDXID": "SPDXRef-Dependency-libonig-6.9.10-82",
+ "versionInfo": "6.9.10",
+ "packageFileName": "libonig-6.9.10-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libonig-6.9.10-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-2-Clause",
+ "licenseDeclared": "BSD-2-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: kkos",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/oniguruma@6.9.10"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/kkos/oniguruma"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/kkos/oniguruma/tree/v6.9.10"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/oniguruma.git@fceeeffdb609661ffaea9be4075c6ff4d6696611"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:18:06Z",
+ "comment": "source-origin=winlibs-fork; upstream=kkos/oniguruma@v6.9.10; source=winlibs/oniguruma@libonig-6.9.10; source-commit=fceeeffdb609661ffaea9be4075c6ff4d6696611"
+ }
+ ]
+ },
+ {
+ "name": "libpng",
+ "SPDXID": "SPDXRef-Dependency-libpng-1.6.58-83",
+ "versionInfo": "1.6.58",
+ "packageFileName": "libpng-1.6.58-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libpng-1.6.58-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "libpng-2.0",
+ "licenseDeclared": "libpng-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: pnggroup",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libpng@1.6.58"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:libpng:libpng:1.6.58:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/pnggroup/libpng"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/pnggroup/libpng/tree/v1.6.58"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libpng.git@5d1b8aa0f6a0f20d7962270ac5ebb64b5795a896"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:58:39Z",
+ "comment": "source-origin=winlibs-fork; upstream=pnggroup/libpng@v1.6.58; source=winlibs/libpng@libpng-1.6.58; source-commit=5d1b8aa0f6a0f20d7962270ac5ebb64b5795a896"
+ }
+ ]
+ },
+ {
+ "name": "libpq",
+ "SPDXID": "SPDXRef-Dependency-libpq-16.15-84",
+ "versionInfo": "16.15",
+ "packageFileName": "libpq-16.15-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libpq-16.15-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "PostgreSQL",
+ "licenseDeclared": "PostgreSQL",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: postgres",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/postgresql@16.15"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:postgresql:postgresql:16.15:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/postgres/postgres"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/postgres/postgres/tree/REL_16_15"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/postgresql.git@5cb6f940a63def19804e2f8c954bf985e4e30724"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-15T04:25:38Z",
+ "comment": "source-origin=winlibs-fork; upstream=postgres/postgres@REL_16_15; source=winlibs/postgresql@libpq-16.15; source-commit=5cb6f940a63def19804e2f8c954bf985e4e30724; not-affected-cves=CVE-2017-8806"
+ }
+ ]
+ },
+ {
+ "name": "openssl",
+ "SPDXID": "SPDXRef-Dependency-openssl-3.0.21.pl1-85",
+ "versionInfo": "3.0.21.pl1",
+ "packageFileName": "openssl-3.0.21.pl1-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openssl-3.0.21.pl1-vs17-x64.zip",
+ "licenseConcluded": "Apache-2.0",
+ "licenseDeclared": "Apache-2.0",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: openssl",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/openssl@3.0.21"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:openssl:openssl:3.0.21:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/openssl/openssl"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/openssl/openssl/tree/openssl-3.0.21"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/openssl.git@76409f1973ddc85fa2f6838b2679b1b2ea1e0bb6"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:37:02Z",
+ "comment": "source-origin=winlibs-fork; upstream=openssl/openssl@openssl-3.0.21; source=winlibs/openssl@openssl-3.0.21.pl1; source-commit=76409f1973ddc85fa2f6838b2679b1b2ea1e0bb6"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "libqdbm",
+ "SPDXID": "SPDXRef-Dependency-libqdbm-1.8.78-86",
+ "versionInfo": "1.8.78",
+ "packageFileName": "libqdbm-1.8.78-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libqdbm-1.8.78-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-2.1-or-later",
+ "licenseDeclared": "LGPL-2.1-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: dbmx.net",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/qdbm@1.8.78"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://dbmx.net/qdbm/"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://dbmx.net/qdbm/"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/qdbm.git@586aa477ff42f0d307dc26adada275642630b28f"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:18:12Z",
+ "comment": "source-origin=winlibs-fork; upstream=https://dbmx.net/qdbm/@qdbm-1.8.78; source=winlibs/qdbm@libqdbm-1.8.78; source-commit=586aa477ff42f0d307dc26adada275642630b28f"
+ }
+ ]
+ },
+ {
+ "name": "libsasl",
+ "SPDXID": "SPDXRef-Dependency-libsasl-2.1.28-87",
+ "versionInfo": "2.1.28",
+ "packageFileName": "libsasl-2.1.28-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libsasl-2.1.28-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-4-Clause",
+ "licenseDeclared": "BSD-4-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: cyrusimap",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/cyrus-sasl@2.1.28"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/cyrusimap/cyrus-sasl"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/cyrusimap/cyrus-sasl/tree/cyrus-sasl-2.1.28"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/cyrus-sasl.git@63a75ce9293206aea981e9f3edcd96645bafd677"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:59:15Z",
+ "comment": "source-origin=winlibs-fork; upstream=cyrusimap/cyrus-sasl@cyrus-sasl-2.1.28; source=winlibs/cyrus-sasl@libsasl-2.1.28; source-commit=63a75ce9293206aea981e9f3edcd96645bafd677"
+ }
+ ]
+ },
+ {
+ "name": "sqlite3",
+ "SPDXID": "SPDXRef-Dependency-sqlite3-3.53.2-88",
+ "versionInfo": "3.53.2",
+ "packageFileName": "sqlite3-3.53.2-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/sqlite3-3.53.2-vs17-x64.zip",
+ "licenseConcluded": "blessing",
+ "licenseDeclared": "blessing",
+ "copyrightText": "NONE",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: sqlite",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/sqlite@3.53.2"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:sqlite:sqlite:3.53.2:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/sqlite/sqlite"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/sqlite/sqlite/tree/version-3.53.2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/sqlite3.git@1317473784d608cfe3193628ccbe27ed2dedc3fe"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:22Z",
+ "comment": "source-origin=winlibs-fork; upstream=sqlite/sqlite@version-3.53.2; source=winlibs/sqlite3@sqlite3-3.53.2; source-commit=1317473784d608cfe3193628ccbe27ed2dedc3fe"
+ }
+ ],
+ "filesAnalyzed": false
+ },
+ {
+ "name": "libsodium",
+ "SPDXID": "SPDXRef-Dependency-libsodium-1.0.22-89",
+ "versionInfo": "1.0.22",
+ "packageFileName": "libsodium-1.0.22-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libsodium-1.0.22-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "ISC",
+ "licenseDeclared": "ISC",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: jedisct1",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libsodium@1.0.22"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/jedisct1/libsodium"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/jedisct1/libsodium/tree/1.0.22-RELEASE"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libsodium.git@1777bbc853d2aeb124e7b842a11b916193db7bdf"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:10Z",
+ "comment": "source-origin=winlibs-fork; upstream=jedisct1/libsodium@1.0.22-RELEASE; source=winlibs/libsodium@libsodium-1.0.22; source-commit=1777bbc853d2aeb124e7b842a11b916193db7bdf"
+ }
+ ]
+ },
+ {
+ "name": "libtidy",
+ "SPDXID": "SPDXRef-Dependency-libtidy-5.8.0-90",
+ "versionInfo": "5.8.0",
+ "packageFileName": "libtidy-5.8.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libtidy-5.8.0-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Zlib",
+ "licenseDeclared": "Zlib",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: htacg",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libtidy@5.8.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/htacg/tidy-html5"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/htacg/tidy-html5/tree/5.8.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libtidy.git@8b6229fd70409656257a6446a254fd62fde8a03a"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:13Z",
+ "comment": "source-origin=winlibs-fork; upstream=htacg/tidy-html5@5.8.0; source=winlibs/libtidy@libtidy-5.8.0; source-commit=8b6229fd70409656257a6446a254fd62fde8a03a"
+ }
+ ]
+ },
+ {
+ "name": "libwebp",
+ "SPDXID": "SPDXRef-Dependency-libwebp-1.6.0-91",
+ "versionInfo": "1.6.0",
+ "packageFileName": "libwebp-1.6.0-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libwebp-1.6.0-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: webmproject",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libwebp@1.6.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/webmproject/libwebp"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/webmproject/libwebp/tree/v1.6.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libwebp.git@1b7801dd9a59c1dc5bda38895d8f94c815732a9f"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:19:55Z",
+ "comment": "source-origin=winlibs-fork; upstream=webmproject/libwebp@v1.6.0; source=winlibs/libwebp@libwebp-1.6.0; source-commit=1b7801dd9a59c1dc5bda38895d8f94c815732a9f"
+ }
+ ]
+ },
+ {
+ "name": "libxml2",
+ "SPDXID": "SPDXRef-Dependency-libxml2-2.11.9-7-92",
+ "versionInfo": "2.11.9-7",
+ "packageFileName": "libxml2-2.11.9-7-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxml2-2.11.9-7-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: GNOME",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libxml2@2.11.9"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:xmlsoft:libxml2:2.11.9:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/GNOME/libxml2"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/GNOME/libxml2/tree/v2.11.9"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libxml2.git@f06d784607050c08a9b28b1fce2faa4236c052cf"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T19:59:36Z",
+ "comment": "source-origin=winlibs-fork; upstream=GNOME/libxml2@v2.11.9; source=winlibs/libxml2@libxml2-2.11.9-7; source-commit=f06d784607050c08a9b28b1fce2faa4236c052cf; fixed-cves=CVE-2024-56171,CVE-2025-24928,CVE-2025-27113,CVE-2025-32414,CVE-2025-32415,CVE-2025-49794,CVE-2025-49795,CVE-2025-49796,CVE-2025-6021,CVE-2025-6170,CVE-2025-7425,CVE-2025-8732,CVE-2026-0989,CVE-2026-0990,CVE-2026-0992,CVE-2026-1757,CVE-2023-45322,CVE-2026-11979"
+ }
+ ]
+ },
+ {
+ "name": "libxpm",
+ "SPDXID": "SPDXRef-Dependency-libxpm-3.5.19-93",
+ "versionInfo": "3.5.19",
+ "packageFileName": "libxpm-3.5.19-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxpm-3.5.19-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: gitlab.freedesktop.org",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libxpm@3.5.19"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://gitlab.freedesktop.org/xorg/lib/libxpm"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://gitlab.freedesktop.org/xorg/lib/libxpm/-/tree/libXpm-3.5.19"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libxpm.git@90f573b4ae2aed9bda5dbb6df3b9d86f1bec9099"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:20:01Z",
+ "comment": "source-origin=winlibs-fork; upstream=https://gitlab.freedesktop.org/xorg/lib/libxpm@libXpm-3.5.19; source=winlibs/libxpm@libxpm-3.5.19; source-commit=90f573b4ae2aed9bda5dbb6df3b9d86f1bec9099"
+ }
+ ]
+ },
+ {
+ "name": "libxslt",
+ "SPDXID": "SPDXRef-Dependency-libxslt-1.1.43-2-94",
+ "versionInfo": "1.1.43-2",
+ "packageFileName": "libxslt-1.1.43-2-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libxslt-1.1.43-2-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "MIT",
+ "licenseDeclared": "MIT",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: GNOME",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libxslt@1.1.43"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:xmlsoft:libxslt:1.1.43:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/GNOME/libxslt"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/GNOME/libxslt/tree/v1.1.43"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libxslt.git@9f399f8d223ddddeaeacd15285a2e993ec326c0f"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T20:01:12Z",
+ "comment": "source-origin=winlibs-fork; upstream=GNOME/libxslt@v1.1.43; source=winlibs/libxslt@libxslt-1.1.43-2; source-commit=9f399f8d223ddddeaeacd15285a2e993ec326c0f; fixed-cves=CVE-2025-10911,CVE-2025-11731,CVE-2025-7424; not-affected-cves=CVE-2025-7425"
+ }
+ ]
+ },
+ {
+ "name": "libzip",
+ "SPDXID": "SPDXRef-Dependency-libzip-1.11.4-95",
+ "versionInfo": "1.11.4",
+ "packageFileName": "libzip-1.11.4-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/libzip-1.11.4-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: nih-at",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/libzip@1.11.4"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/nih-at/libzip"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/nih-at/libzip/tree/v1.11.4"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/libzip.git@94b3e6583c6ddf77d3fef95699310818a91bc23a"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:59:27Z",
+ "comment": "source-origin=winlibs-fork; upstream=nih-at/libzip@v1.11.4; source=winlibs/libzip@libzip-1.11.4; source-commit=94b3e6583c6ddf77d3fef95699310818a91bc23a"
+ }
+ ]
+ },
+ {
+ "name": "mpir",
+ "SPDXID": "SPDXRef-Dependency-mpir-3.0.0-2-96",
+ "versionInfo": "3.0.0-2",
+ "packageFileName": "mpir-3.0.0-2-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/mpir-3.0.0-2-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "LGPL-3.0-or-later",
+ "licenseDeclared": "LGPL-3.0-or-later",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: wbhart",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/mpir@3.0.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/wbhart/mpir"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/wbhart/mpir/tree/mpir-3.0.0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/mpir.git@796ed2cee089c96dc254caec624fe9084c3a68c3"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:18:35Z",
+ "comment": "source-origin=winlibs-fork; upstream=wbhart/mpir@mpir-3.0.0; source=winlibs/mpir@mpir-3.0.0-2; source-commit=796ed2cee089c96dc254caec624fe9084c3a68c3"
+ }
+ ]
+ },
+ {
+ "name": "net-snmp",
+ "SPDXID": "SPDXRef-Dependency-net-snmp-5.9.4-97",
+ "versionInfo": "5.9.4",
+ "packageFileName": "net-snmp-5.9.4-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/net-snmp-5.9.4-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: net-snmp",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/net-snmp@5.9.4"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/net-snmp/net-snmp"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/net-snmp/net-snmp/tree/v5.9.4"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/net-snmp.git@0c478089ece16d6346fbf464a9ef00d17f123fc3"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:59:21Z",
+ "comment": "source-origin=winlibs-fork; upstream=net-snmp/net-snmp@v5.9.4; source=winlibs/net-snmp@net-snmp-5.9.4; source-commit=0c478089ece16d6346fbf464a9ef00d17f123fc3"
+ }
+ ]
+ },
+ {
+ "name": "openldap",
+ "SPDXID": "SPDXRef-Dependency-openldap-2.7.0-2-98",
+ "versionInfo": "2.7.0-2",
+ "packageFileName": "openldap-2.7.0-2-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/openldap-2.7.0-2-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "OLDAP-2.8",
+ "licenseDeclared": "OLDAP-2.8",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: openldap",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/openldap@2.7.0"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:openldap:openldap:2.7.0:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/openldap/openldap"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/openldap/openldap/tree/OPENLDAP_REL_ENG_2_7_0"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/openldap.git@4b2449a2e39d92b3b789ff71350b4bf70ed0713e"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-19T04:28:36Z",
+ "comment": "source-origin=winlibs-fork; upstream=openldap/openldap@OPENLDAP_REL_ENG_2_7_0; source=winlibs/openldap@openldap-2.7.0-2; source-commit=4b2449a2e39d92b3b789ff71350b4bf70ed0713e"
+ }
+ ]
+ },
+ {
+ "name": "rxspencer",
+ "SPDXID": "SPDXRef-Dependency-rxspencer-3.9.0-99",
+ "versionInfo": "3.9.0",
+ "downloadLocation": "https://github.com/garyhouston/rxspencer/tree/v3.9.0",
+ "filesAnalyzed": false,
+ "licenseConcluded": "Spencer-94",
+ "licenseDeclared": "Spencer-94",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: garyhouston",
+ "primaryPackagePurpose": "LIBRARY",
+ "sourceInfo": "Embedded from rxspencer.",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/rxspencer@3.9.0"
+ }
+ ]
+ },
+ {
+ "name": "sqlite3",
+ "SPDXID": "SPDXRef-Dependency-sqlite3-3.53.4-100",
+ "versionInfo": "3.53.4",
+ "packageFileName": "sqlite3-3.53.4-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/sqlite3-3.53.4-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "blessing",
+ "licenseDeclared": "blessing",
+ "copyrightText": "NONE",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: sqlite",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/sqlite@3.53.4"
+ },
+ {
+ "referenceCategory": "SECURITY",
+ "referenceType": "cpe23Type",
+ "referenceLocator": "cpe:2.3:a:sqlite:sqlite:3.53.4:*:*:*:*:*:*:*"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/sqlite/sqlite"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/sqlite/sqlite/tree/version-3.53.4"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/sqlite3.git@90771f2f145baf5b9a2e094ff9ad36d700079125"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-08-17T12:19:16Z",
+ "comment": "source-origin=winlibs-fork; upstream=sqlite/sqlite@version-3.53.4; source=winlibs/sqlite3@sqlite3-3.53.4; source-commit=90771f2f145baf5b9a2e094ff9ad36d700079125"
+ }
+ ]
+ },
+ {
+ "name": "wineditline",
+ "SPDXID": "SPDXRef-Dependency-wineditline-2.208-101",
+ "versionInfo": "2.208",
+ "packageFileName": "wineditline-2.208-vs17-x64.zip",
+ "downloadLocation": "https://downloads.php.net/~windows/php-sdk/deps/vs17/x64/wineditline-2.208-vs17-x64.zip",
+ "filesAnalyzed": false,
+ "licenseConcluded": "BSD-3-Clause",
+ "licenseDeclared": "BSD-3-Clause",
+ "copyrightText": "See accompanying license and notice files.",
+ "supplier": "Organization: Winlibs",
+ "originator": "Organization: ptosco",
+ "primaryPackagePurpose": "LIBRARY",
+ "externalRefs": [
+ {
+ "referenceCategory": "PACKAGE-MANAGER",
+ "referenceType": "purl",
+ "referenceLocator": "pkg:generic/wineditline@2.208"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/ptosco/wineditline"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "https://github.com/ptosco/wineditline/tree/wineditline-2.208"
+ },
+ {
+ "referenceCategory": "OTHER",
+ "referenceType": "website",
+ "referenceLocator": "git+https://github.com/winlibs/wineditline.git@39ae4ff02a06c97f804833844b767777d6625fb8"
+ }
+ ],
+ "annotations": [
+ {
+ "annotationType": "OTHER",
+ "annotator": "Tool: winlib-builder-sbom-1.0.0",
+ "annotationDate": "2026-07-16T10:20:05Z",
+ "comment": "source-origin=winlibs-fork; upstream=ptosco/wineditline@wineditline-2.208; source=winlibs/wineditline@WinEditLine-2.208; source-commit=39ae4ff02a06c97f804833844b767777d6625fb8"
+ }
+ ]
+ }
+ ],
+ "relationships": [
+ {
+ "spdxElementId": "SPDXRef-DOCUMENT",
+ "relationshipType": "DESCRIBES",
+ "relatedSpdxElement": "SPDXRef-PHP"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-Berkeley-uuencode-snapshot-25636b9321c2-1"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-Boost.Context-assembly-snapshot-6abda7f14758-2"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-crypt-blowfish-1.3-3"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-DynASM-1.5.0-4"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-FreeSec-libcrypt-snapshot-6b1d1d57b0af-5"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libarchive-tar-format-octal-snapshot-36341177800f-6"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libavifinfo-2b924defa4c2cd227540efe164067a8cc913eeba-7"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libbcmath-0.2-8"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libgd-2.0.35-9"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libmagic-5.46-10"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libmbfl-1.3.2-11"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-libzip-zip-dirent-snapshot-79aa92b5cca9-12"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-MTRand-1.0-13"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-OpenLDAP-ucgendat-snapshot-572651bf88b0-14"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-pcre2lib-10.44-15"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-snprintf-snapshot-42618fe2e789-16"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-strlcat-snapshot-d2244e6a54fe-17"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-strlcpy-snapshot-144d697952d1-18"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-strnatcmp-snapshot-e14f21965b39-19"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-Tcl-scanf-implementation-8.3.0-20"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-timelib-2022.17-21"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-XKCP-SHA-3-snapshot-aba3170bb6e1-22"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Source-xxHash-0.8.1-23"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-ICU-77.1-1-24"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-apache-2.4.68-25"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-apache-2.4.68-25",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-apr-iconv-1.2.2-26"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-apr-util-1.6.3-27",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-apr-util-x64-windows-c0221bb1ebe3af251a9b9a69917701cf75f2bbfafabb4c88ee331dba0aad8dcd-28"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-apr-1.7.6-1-30",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-apr-x64-windows-03919ccf3f69b15eba8f04368099f5d3dc5c23ed3526015ec9137984d41c4fad-31"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-brotli-1.2.0-33",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-brotli-x64-windows-45a3ef2859dd01b67fd278f7750b1e843fcc4554fd5350940963f48da31a7426-34"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-curl-8.21.0-1-36",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-curl-x64-windows-ea772160a9dd49cf8c0365727979d54a2593b7e9b057572af2174857bd60016e-37"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-expat-2.8.2-39",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-expat-x64-windows-c1722303603d771cc7dd274c0d811b2d1f3caf311b6117a74e9ef24bd7c7a1e6-40"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-jansson-2.15.1-42",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-jansson-x64-windows-678d7ad3250826f28d4b77b4c2ef87cb6b02d5dfb8d29c14eeac3f5cf5a1ced4-43"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-lua-5.5.0-1-45",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-lua-x64-windows-e8f14584d48e1c2107547c9f22b9a9eccf73691b4aa033d797703ff440500676-46"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-nghttp2-1.69.0-48",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-nghttp2-x64-windows-1ea9da733d3d49024dff92b30043ee27dba59373816942b3d8c986b8a5edb676-49"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-openssl-3.6.3-51",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-x64-windows-8ebeacc935df08d9d1c210b16ef5af918196229f49850b57a60b800802600677-52"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-pcre2-10.47-1-54",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-pcre2-x64-windows-1b0a3280c093bfad0beafbc16e9be01ee86d1064a85163ebb3afc7b0a5339ddc-55"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-zlib-1.3.2-1-58",
+ "relationshipType": "GENERATES",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-x64-windows-5ae23b0077d1eaea33185c69c114d098231e93cc7d2c77a8123d625ddd85c44b-59"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-brotli-1.2.0-61"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-fbclient-4.0.7-62"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-freetype-2.14.3-63"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-glib-2.88.3-64"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-glib-2.88.3-64",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libffi-3.8.0-65"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-glib-2.88.3-64",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libintl-1.0-66"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-glib-2.88.3-64",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-1.3.2-67"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libargon2-20190702-68"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libavif-1.4.2-69"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libavif-1.4.2-69",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-aom-3.14.1-70"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libbzip2-1.0.8-1-71"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libcurl-8.21.0-1-72"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-brotli-1.2.0-61"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libssh2-1.11.1-7-73"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libssh2-1.11.1-7-73",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.5.7-74"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libssh2-1.11.1-7-73",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-1.3.2-67"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libzstd-1.5.7-75"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-nghttp2-1.70.0-76"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.5.7-74"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libcurl-8.21.0-1-72",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-1.3.2-67"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libenchant2-2.8.19-77"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libenchant2-2.8.19-77",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-glib-2.88.3-64"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libffi-3.8.0-65"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libiconv-1.19-78"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libintl-1.0-66"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libjpeg-turbo-3.2.0-79"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-liblmdb-0.9.35-80"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-liblzma-5.8.3-81"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libonig-6.9.10-82"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libpng-1.6.58-83"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libpng-1.6.58-83",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-1.3.2-67"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libpq-16.15-84"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libpq-16.15-84",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.0.21.pl1-85"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libqdbm-1.8.78-86"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libsasl-2.1.28-87"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libsasl-2.1.28-87",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-liblmdb-0.9.35-80"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libsasl-2.1.28-87",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.0.21.pl1-85"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libsasl-2.1.28-87",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-sqlite3-3.53.2-88"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libsodium-1.0.22-89"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libssh2-1.11.1-7-73"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libtidy-5.8.0-90"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libwebp-1.6.0-91"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libxml2-2.11.9-7-92"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libxml2-2.11.9-7-92",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libiconv-1.19-78"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libxpm-3.5.19-93"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libxslt-1.1.43-2-94"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libxslt-1.1.43-2-94",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libiconv-1.19-78"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libxslt-1.1.43-2-94",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libxml2-2.11.9-7-92"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libzip-1.11.4-95"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libzip-1.11.4-95",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libbzip2-1.0.8-1-71"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libzip-1.11.4-95",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-liblzma-5.8.3-81"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-libzip-1.11.4-95",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-1.3.2-67"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libzstd-1.5.7-75"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-mpir-3.0.0-2-96"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-net-snmp-5.9.4-97"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-net-snmp-5.9.4-97",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.0.21.pl1-85"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-nghttp2-1.70.0-76"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openldap-2.7.0-2-98"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-openldap-2.7.0-2-98",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-rxspencer-3.9.0-99"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-openldap-2.7.0-2-98",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-libsasl-2.1.28-87"
+ },
+ {
+ "spdxElementId": "SPDXRef-Dependency-openldap-2.7.0-2-98",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.0.21.pl1-85"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-openssl-3.5.7-74"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-sqlite3-3.53.4-100"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-wineditline-2.208-101"
+ },
+ {
+ "spdxElementId": "SPDXRef-PHP",
+ "relationshipType": "DEPENDS_ON",
+ "relatedSpdxElement": "SPDXRef-Dependency-zlib-1.3.2-67"
+ }
+ ],
+ "hasExtractedLicensingInfos": [
+ {
+ "licenseId": "LicenseRef-fbclient-IDPL-1.0",
+ "extractedText": "Initial Developer's PUBLIC LICENSE\r\n Version 1.0 \r\n\r\n 1. Definitions\r\n\r\n 1.0 \"Commercial Use\" means distribution or otherwise making the Covered \r\n Code available to a third party. \r\n\r\n 1.1 ''Contributor'' means each entity that creates or contributes to the \r\n creation of Modifications. \r\n\r\n 1.2 ''Contributor Version'' means the combination of the Original Code, prior \r\n Modifications used by a Contributor, and the Modifications made by that \r\n particular Contributor. \r\n\r\n 1.3. ''Covered Code'' means the Original Code or Modifications or the \r\n combination of the Original Code and Modifications, in each case including \r\n portions thereof. \r\n\r\n 1.4. ''Electronic Distribution Mechanism'' means a mechanism generally \r\n accepted in the software development community for the electronic transfer of \r\n data. \r\n\r\n 1.5. ''Executable'' means Covered Code in any form other than Source Code. \r\n\r\n 1.6. ''Initial Developer'' means the individual or entity identified as the Initial \r\n Developer in the Source Code notice required by Exhibit A. \r\n\r\n 1.7. ''Larger Work'' means a work which combines Covered Code or portions \r\n thereof with code not governed by the terms of this License. \r\n\r\n 1.8. ''License'' means this document. \r\n\r\n 1.8.1. \"Licensable\" means having the right to grant, to the maximum \r\n extent possible, whether at the time of the initial grant or subsequently \r\n acquired, any and all of the rights conveyed herein.\r\n\r\n 1.9. ''Modifications'' means any addition to or deletion from the substance or \r\n structure of either the Original Code or any previous Modifications. When \r\n Covered Code is released as a series of files, a Modification is: \r\n\r\n Any addition to or deletion from the contents of a file containing Original \r\n Code or previous Modifications. \r\n\r\n Any new file that contains any part of the Original Code or previous \r\n Modifications. \r\n\r\n 1.10. ''Original Code'' means Source Code of computer software code which \r\n is described in the Source Code notice required by Exhibit A as Original Code, \r\n and which, at the time of its release under this License is not already Covered \r\n Code governed by this License. \r\n\r\n 1.10.1. \"Patent Claims\" means any patent claim(s), now owned or \r\n hereafter acquired, including without limitation, method, process, and \r\n apparatus claims, in any patent Licensable by grantor.\r\n\r\n 1.11. ''Source Code'' means the preferred form of the Covered Code for \r\n making modifications to it, including all modules it contains, plus any associated \r\n interface definition files, scripts used to control compilation and installation of \r\n an Executable, or source code differential comparisons against either the \r\n Original Code or another well known, available Covered Code of the \r\n Contributor's choice. The Source Code can be in a compressed or archival \r\n form, provided the appropriate decompression or de-archiving software is \r\n widely available for no charge.\r\n\r\n 1.12. \"You'' (or \"Your\") means an individual or a legal entity exercising rights \r\n under, and complying with all of the terms of, this License or a future version \r\n of this License issued under Section 6.1. For legal entities, \"You'' includes any \r\n entity w hich controls, is controlled by, or is under common control with You. \r\n For purposes of this definition, \"control'' means (a) the power, direct or \r\n indirect, to cause the direction or management of such entity, whether by \r\n contract or otherwise, or (b) ownership of more than fifty percent (50%) of \r\n the outstanding shares or beneficial ownership of such entity. \r\n\r\n\r\n 2. Source Code License.\r\n\r\n\r\n 2.1. The Initial Developer Grant. The Initial Developer hereby grants You a \r\n world-wide, royalty-free, non-exclusive license, subject to third party intellectual \r\n property claims: \r\n\r\n (a) under intellectual property rights (other than patent or trademark) \r\n Licensable by Initial Developer to use, reproduce, modify, display, perform, \r\n sublicense and distribute the Original Code (or portions thereof) with or without \r\n Modifications, and/or as part of a Larger Work; and \r\n\r\n (b) under Patents Claims infringed by the making, using or selling of Original \r\n Code, to make, have made, use, practice, sell, and offer for sale, and/or \r\n otherwise dispose of the Original Code (or portions thereof). \r\n (c) the licenses granted in this Section 2.1(a) and (b) are effective on the date \r\n Initial Developer first distributes Original Code under the terms of this License. \r\n\r\n d) Notwithstanding Section 2.1(b) above, no patent license is granted:\r\n\r\n 1) for code that You delete from the Original Code; \r\n\r\n 2) separate from the Original Code; or \r\n\r\n 3) for infringements caused by: \r\n\r\n i) the modification of the Original Code or \r\n\r\n ii) the combination of the Original Code with other software or \r\n devices. \r\n\r\n 2.2. Contributor Grant. Subject to third party intellectual property claims, each \r\n Contributor hereby grants You a world-wide, royalty-free, non-exclusive license \r\n\r\n (a) under intellectual property rights (other than patent or trademark) \r\n Licensable by Contributor, to use, reproduce, modify, display, perform, \r\n sublicense and distribute the Modifications created by such Contributor (or \r\n portions thereof) either on an unmodified basis, with other Modifications, as \r\n Covered Code and/or as part of a Larger Work; and \r\n\r\n (b) under Patent Claims infringed by the making, using, or selling of \r\n Modifications made by that Contributor either alone and/or in combination with \r\n its Contributor Version (or portions of such combination), to make, use, sell, \r\n offer for sale, have made, and/or otherwise dispose of: 1) Modifications made \r\n by that Contributor (or portions thereof); and 2) the combination of \r\n Modifications made by that Contributor with its Contributor Version (or portions \r\n of such combination). \r\n\r\n (c) the licenses granted in Sections 2.2(a) and 2.2(b) are effective on the date \r\n Contributor first makes Commercial Use of the Covered Code. \r\n\r\n (d) Notwithstanding Section 2.2(b) above, no patent license is granted:\r\n\r\n 1) for any code that Contributor has deleted from the Contributor \r\n Version; \r\n\r\n 2) separate from the Contributor Version; \r\n\r\n 3) for infringements caused by: \r\n\r\n i) third party modifications of Contributor Version or \r\n\r\n ii) the combination of Modifications made by that Contributor with \r\n other software (except as part of the Contributor Version) or \r\n other devices; or \r\n\r\n 4) under Patent Claims infringed by Covered Code in the absence of \r\n Modifications made by that Contributor. \r\n\r\n\r\n 3. Distribution Obligations.\r\n\r\n\r\n 3.1. Application of License. The Modifications which You create or to which \r\n You contribute are governed by the terms of this License, including without \r\n limitation Section 2.2. The Source Code version of Covered Code may be \r\n distributed only under the terms of this License or a future version of this \r\n License released under Section 6.1, and You must include a copy of this \r\n License with every copy of the Source Code You distribute. You may not offer \r\n or impose any terms on any Source Code version that alters or restricts the \r\n applicable version of this License or the recipients' rights hereunder. However, \r\n You may include an additional document offering the additional rights described \r\n in Section 3.5. \r\n\r\n\r\n 3.2. Availability of Source Code. Any Modification which You create or to \r\n which You contribute must be made available in Source Code form under the \r\n terms of this License either on the same media as an Executable version or via \r\n an accepted Electronic Distribution Mechanism to anyone to whom you made \r\n an Executable version available; and if made available via Electronic Distribution \r\n Mechanism, must remain available for at least twelve (12) months after the \r\n date it initially became available, or at least six (6) months after a subsequent \r\n version of that particular Modification has been made available to such \r\n recipients. You are responsible for ensuring that the Source Code version \r\n remains available even if the Electronic Distribution Mechanism is maintained by \r\n a third party. \r\n\r\n\r\n 3.3. Description of Modifications. You must cause all Covered Code to \r\n which You contribute to contain a file documenting the changes You made to \r\n create that Covered Code and the date of any change. You must include a \r\n prominent statement that the Modification is derived, directly or indirectly, from \r\n Original Code provided by the Initial Developer and including the name of the \r\n Initial Developer in \r\n\r\n (a) the Source Code, and\r\n\r\n (b) in any notice in an Executable version or related documentation in \r\n which You describe the origin or ownership of the Covered Code.\r\n\r\n\r\n 3.4. Intellectual Property Matters\r\n\r\n a) Third Party Claims. If Contributor has knowledge that a license under \r\n a third party's intellectual property rights is required to exercise the \r\n rights granted by such Contributor under Sections 2.1 or 2.2, \r\n Contributor must include a text file with the Source Code distribution \r\n titled \"LEGAL'' which describes the claim and the party making the claim \r\n in sufficient detail that a recipient will know whom to contact. If \r\n Contributor obtains such knowledge after the Modification is made \r\n available as described in Section 3.2, Contributor shall promptly modify \r\n the LEGAL file in all copies Contributor makes available thereafter and \r\n shall take other steps (such as notifying appropriate mailing lists or \r\n newsgroups) reasonably calculated to inform those who received the \r\n Covered Code that new knowledge has been obtained. \r\n\r\n (b) Contributor APIs. If Contributor's Modifications include an application \r\n programming interface and Contributor has knowledge of patent \r\n licenses which are reasonably necessary to implement that API, \r\n Contributor must also include this information in the LEGAL file. \r\n\r\n\r\n (c) Representations. Contributor represents that, except as disclosed \r\n pursuant to Section 3.4(a) above, Contributor believes that Contributor's \r\n Modifications are Contributor's original creation(s) and/or Contributor \r\n has sufficient rights to grant the rights conveyed by this License. \r\n\r\n\r\n 3.5. Required Notices. You must duplicate the notice in Exhibit A in each file \r\n of the Source Code. If it is not possible to put such notice in a particular Source \r\n Code file due to its structure, then You must include such notice in a location \r\n (such as a relevant directory) where a user would be likely to look for such a \r\n notice. If You created one or more Modification(s) You may add your name as \r\n a Contributor to the notice described in Exhibit A. You must also duplicate this \r\n License in any documentation for the Source Code where You describe \r\n recipients' rights or ownership rights relating to Covered Code. You may \r\n choose to offer, and to charge a fee for, warranty, support, indemnity or \r\n liability obligations to one or more recipients of Covered Code. However, You \r\n may do so only on Your own behalf, and not on behalf of the Initial Developer \r\n or any Contributor. You must make it absolutely clear than any such warranty, \r\n support, indemnity or liability obligation is offered by You alone, and You \r\n hereby agree to indemnify the Initial Developer and every Contributor for any \r\n liability incurred by the Initial Developer or such Contributor as a result of \r\n warranty, support, indemnity or liability terms You offer. \r\n\r\n\r\n 3.6. Distribution of Executable Versions. You may distribute Covered \r\n Code in Executable form only if the requirements of Section 3.1-3.5 have been \r\n met for that Covered Code, and if You include a notice stating that the Source \r\n Code version of the Covered Code is available under the terms of this License, \r\n including a description of how and where You have fulfilled the obligations of \r\n Section 3.2. The notice must be conspicuously included in any notice in an \r\n Executable version, related documentation or collateral in which You describe \r\n recipients' rights relating to the Covered Code. You may distribute the \r\n Executable version of Covered Code or ownership rights under a license of \r\n Your choice, which may contain terms different from this License, provided \r\n that You are in compliance with the terms of this License and hat the license \r\n for the Executable version does not attempt to limit or alter the recipient's rights \r\n in the Source Code version from the rights set forth in this License. If You \r\n distribute the Executable version under a different license You must make it \r\n absolutely clear that any terms which differ from this License are offered by \r\n You alone, not by the Initial Developer or any Contributor. You hereby agree to \r\n indemnify the Initial Developer and every Contributor for any liability incurred by \r\n the Initial Developer or such Contributor as a result of any such terms You \r\n offer. \r\n\r\n\r\n 3.7. Larger Works. You may create a Larger Work by combining Covered \r\n Code with other code not governed by the terms of this License and distribute \r\n the Larger Work as a single product. In such a case, You must make sure the \r\n requirements of this License are fulfilled for the Covered Code. \r\n\r\n\r\n 4. Inability to Comply Due to Statute or Regulation.\r\n\r\n \r\n\r\n If it is impossible for You to comply with any of the terms of this License with respect \r\n to some or all of the Covered Code due to statute, judicial order, or regulation then You \r\n must: \r\n\r\n (a) comply with the terms of this License to the maximum extent possible; and \r\n\r\n (b) describe the limitations and the code they affect. Such description must be \r\n included in the LEGAL file described in Section 3.4 and must be included with \r\n all distributions of the Source Code. Except to the extent prohibited by statute \r\n or regulation, such description must be sufficiently detailed for a recipient of \r\n ordinary skill to be able to understand it. \r\n\r\n\r\n 5. Application of this License.\r\n\r\n \r\n\r\n This License applies to code to which the Initial Developer has attached the notice in \r\n Exhibit A and to related Covered Code. \r\n\r\n\r\n 6. Versions of the License.\r\n\r\n\r\n 6.1. New Versions. The Initial Developer of this code may publish revised \r\n and/or new versions of the License from time to time. Each version will be \r\n given a distinguishing version number. \r\n\r\n\r\n 6.2. Effect of New Versions. Once Covered Code has been published under \r\n a particular version of the License, You may always continue to use it under \r\n the terms of that version. You may also choose to use such Covered Code \r\n under the terms of any subsequent version of the License published by the \r\n Initial Developer. No one other than the Initial Developer has the right to modify \r\n the terms applicable to Covered Code created under this License.\r\n\r\n\r\n 6.3. Derivative Works. If You create or use a modified version of this License \r\n (which you may only do in order to apply it to code which is not already \r\n Covered Code governed by this License), You must \r\n\r\n (a) rename Your license so that the phrases ''Mozilla'', ''MOZILLAPL'', \r\n ''MOZPL'', ''Netscape'', \"MPL\", ''NPL\", or any confusingly similar phrases \r\n do not appear in your license (except to note that your license differs \r\n from this License) and \r\n\r\n (b) otherwise make it clear that Your version of the license contains \r\n terms which differ from the Mozilla Public License and Netscape Public \r\n License. (Filling in the name of the Initial Developer, Original Code or \r\n Contributor in the notice described in Exhibit A shall not of themselves \r\n be deemed to be modifications of this License.) \r\n\r\n\r\n 6.4 Origin of the Initial Developer's Public License. The Initial Developer's \r\n Public License is based on the Mozilla Public License V 1.1 with the following \r\n changes: \r\n\r\n 1) The license is published by the Initial Developer of this code. Only the \r\n Initial Developer can modify the terms applicable to Covered Code. \r\n\r\n 2) The license can be modified and used for code which is not already \r\n governed by this license. Modified versions of the license must be \r\n renamed to avoid confusion with Netscape's license Initial Developer's's \r\n license and must include a description of changes from the Initial \r\n Developer's Public License. \r\n\r\n 3) The name of the license in Exhibit A is the \"Initial Developer's Public \r\n License\".\r\n\r\n 4) The reference to an alternative license in Exhibit A has been removed\r\n\r\n . \r\n 5) Amendments I, II, III, V, and VI have been deleted.\r\n\r\n 6) Exhibit A, Netscape Public License has been deleted\r\n\r\n\r\n 7. DISCLAIMER OF WARRANTY.\r\n\r\n \r\n\r\n COVERED CODE IS PROVIDED UNDER THIS LICENSE ON AN \"AS IS'' BASIS, WITHOUT \r\n WARRANTY OF ANY KIND, EITHER EXPRESSED OR IMPLIED, INCLUDING, WITHOUT \r\n LIMITATION, WARRANTIES THAT THE COVERED CODE IS FREE OF DEFECTS, \r\n MERCHANTABLE, FIT FOR A PARTICULAR PURPOSE OR NON-INFRINGING. THE \r\n ENTIRE RISK AS TO THE QUALITY AND PERFORMANCE OF THE COVERED CODE IS \r\n WITH YOU. SHOULD ANY COVERED CODE PROVE DEFECTIVE IN ANY RESPECT, \r\n YOU (NOT THE INITIAL DEVELOPER OR ANY OTHER CONTRIBUTOR) ASSUME THE \r\n COST OF ANY NECESSARY SERVICING, REPAIR OR CORRECTION. THIS DISCLAIMER \r\n OF WARRANTY CONSTITUTES AN ESSENTIAL PART OF THIS LICENSE. NO USE OF \r\n ANY COVERED CODE IS AUTHORIZED HEREUNDER EXCEPT UNDER THIS \r\n DISCLAIMER. \r\n\r\n\r\n 8. TERMINATION.\r\n\r\n \r\n 8.1. This License and the rights granted hereunder will terminate automatically \r\n if You fail to comply with terms herein and fail to cure such breach within 30 \r\n days of becoming aware of the breach. All sublicenses to the Covered Code \r\n which are properly granted shall survive any termination of this License. \r\n Provisions which, by their nature, must remain in effect beyond the termination \r\n of this License shall survive. \r\n\r\n 8.2. If You initiate litigation by asserting a patent infringement claim (excluding \r\n declatory judgment actions) against Initial Developer or a Contributor (the Initial \r\n Developer or Contributor against whom You file such action is referred to as \r\n \"Participant\") alleging that:\r\n\r\n (a) such Participant's Contributor Version directly or indirectly infringes \r\n any patent, then any and all rights granted by such Participant to You \r\n under Sections 2.1 and/or 2.2 of this License shall, upon 60 days notice \r\n from Participant terminate prospectively, unless if within 60 days after \r\n receipt of notice You either:\r\n\r\n (i) agree in writing to pay Participant a mutually agreeable \r\n reasonable royalty for Your past and future use of Modifications \r\n made by such Participant, or \r\n\r\n (ii) withdraw Your litigation claim with respect to the Contributor \r\n Version against such Participant. \r\n\r\n\r\n If within 60 days of notice, a reasonable royalty and payment \r\n arrangement are not mutually agreed upon in writing by the parties or \r\n the litigation claim is not withdrawn, the rights granted by Participant to \r\n You under Sections 2.1 and/or 2.2 automatically terminate at the \r\n expiration of the 60 day notice period specified above. \r\n\r\n (b) any software, hardware, or device, other than such Participant's \r\n Contributor Version, directly or indirectly infringes any patent, then any \r\n rights granted to You by such Participant under Sections 2.1(b) and \r\n 2.2(b) are revoked effective as of the date You first made, used, sold, \r\n distributed, or had made, Modifications made by that Participant. \r\n\r\n 8.3. If You assert a patent infringement claim against Participant alleging that \r\n such Participant's Contributor Version directly or indirectly infringes any patent \r\n where such claim is resolved (such as by license or settlement) prior to the \r\n initiation of patent infringement litigation, then the reasonable value of the \r\n licenses granted by such Participant under Sections 2.1 or 2.2 shall be taken \r\n into account in determining the amount or value of any payment or license. \r\n\r\n 8.4. In the event of termination under Sections 8.1 or 8.2 above, all end user \r\n license agreements (excluding distributors and resellers) which have been \r\n validly granted by You or any distributor hereunder prior to termination shall \r\n survive termination. \r\n\r\n\r\n 9. LIMITATION OF LIABILITY.\r\n\r\n\r\n UNDER NO CIRCUMSTANCES AND UNDER NO LEGAL THEORY, WHETHER TORT \r\n (INCLUDING NEGLIGENCE), CONTRACT, OR OTHERWISE, SHALL YOU, THE INITIAL \r\n DEVELOPER, ANY OTHER CONTRIBUTOR, OR ANY DISTRIBUTOR OF COVERED \r\n CODE, OR ANY SUPPLIER OF ANY OF SUCH PARTIES, BE LIABLE TO ANY PERSON \r\n FOR ANY INDIRECT, SPECIAL, INCIDENTAL, OR CONSEQUENTIAL DAMAGES OF ANY \r\n CHARACTER INCLUDING, WITHOUT LIMITATION, DAMAGES FOR LOSS OF \r\n GOODWILL, WORK STOPPAGE, COMPUTER FAILURE OR MALFUNCTION, OR ANY \r\n AND ALL OTHER COMMERCIAL DAMAGES OR LOSSES, EVEN IF SUCH PARTY \r\n SHALL HAVE BEEN INFORMED OF THE POSSIBILITY OF SUCH DAMAGES. THIS \r\n LIMITATION OF LIABILITY SHALL NOT APPLY TO LIABILITY FOR DEATH OR \r\n PERSONAL INJURY RESULTING FROM SUCH PARTY'S NEGLIGENCE TO THE EXTENT \r\n APPLICABLE LAW PROHIBITS SUCH LIMITATION. SOME JURISDICTIONS DO NOT \r\n ALLOW THE EXCLUSION OR LIMITATION OF INCIDENTAL OR CONSEQUENTIAL \r\n DAMAGES, SO THIS EXCLUSION AND LIMITATION MAY NOT APPLY TO YOU. \r\n\r\n\r\n 10. U.S. GOVERNMENT END USERS.\r\n\r\n\r\n The Covered Code is a ''commercial item,'' as that term is defined in 48 C.F.R. 2.101 \r\n (Oct. 1995), consisting of ''commercial computer software'' and ''commercial computer \r\n software documentation,'' as such terms are used in 48 C.F.R. 12.212 (Sept. 1995). \r\n Consistent with 48 C.F.R. 12.212 and 48 C.F.R. 227.7202-1 through 227.7202-4 (June \r\n 1995), all U.S. Government End Users acquire Covered Code with only those rights \r\n set forth herein. \r\n\r\n\r\n 11. MISCELLANEOUS.\r\n\r\n\r\n This License represents the complete agreement concerning subject matter hereof. If \r\n any provision of this License is held to be unenforceable, such provision shall be \r\n reformed only to the extent necessary to make it enforceable. This License shall be \r\n governed by California law provisions (except to the extent applicable law, if any, \r\n provides otherwise), excluding its conflict-of-law provisions. With respect to disputes \r\n in which at least one party is a citizen of, or an entity chartered or registered to do \r\n business in the United States of America, any litigation relating to this License shall be \r\n subject to the jurisdiction of the Federal Courts of the Northern District of California, \r\n with venue lying in Santa Clara County, California, with the losing party responsible for \r\n costs, including without limitation, court costs and reasonable attorneys' fees and \r\n expenses. The application of the United Nations Convention on Contracts for the \r\n International Sale of Goods is expressly excluded. Any law or regulation which \r\n provides that the language of a contract shall be construed against the drafter shall \r\n not apply to this License. \r\n\r\n\r\n 12. RESPONSIBILITY FOR CLAIMS.\r\n\r\n\r\n As between Initial Developer and the Contributors, each party is responsible for claims \r\n and damages arising, directly or indirectly, out of its utilization of rights under this \r\n License and You agree to work with Initial Developer and Contributors to distribute \r\n such responsibility on an equitable basis. Nothing herein is intended or shall be \r\n deemed to constitute any admission of liability. \r\n\r\n\r\n 13. MULTIPLE-LICENSED CODE.\r\n\r\n\r\n Initial Developer may designate portions of the Covered Code as \"Multiple-Licensed\". \r\n \"Multiple-Licensed\" means that the Initial Devpoeloper permits you to utilize portions of \r\n the Covered Code under Your choice of the IDPL or the alternative licenses, if any, \r\n specified by the Initial Developer in the file described in Exhibit A. \r\n\r\n EXHIBIT A -Initial Developer's Public License.\r\n\r\n The contents of this file are subject to the Initial Developer's Public License Version 1.0 \r\n (the \"License\"); you may not use this file except in compliance with the License. You \r\n may obtain a copy of the License at http://www.ibphoenix.com/idpl.html Software \r\n distributed under the License is distributed on an \"AS IS\" basis, WITHOUT WARRANTY \r\n OF ANY KIND, either express or implied. See the License for the specific language \r\n governing rights and limitations under the License.\r\n\r\n The Original Code is ______________________________________. \r\n\r\n The Initial Developer of the Original Code is ________________________.\r\n\r\n Portions created by ______________________ are Copyright (C) ______ \r\n _______________________.\r\n\r\n All Rights Reserved.\r\n\r\n Contributor(s): ______________________________________.",
+ "name": "Initial Developer's Public License 1.0"
+ }
+ ]
+}
diff --git a/ParlzDownloadMAX/PHP/bin/extras/ssl/legacy.dll b/ParlzDownloadMAX/PHP/bin/extras/ssl/legacy.dll
new file mode 100644
index 0000000..b525a1a
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/extras/ssl/legacy.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/extras/ssl/openssl.cnf b/ParlzDownloadMAX/PHP/bin/extras/ssl/openssl.cnf
new file mode 100644
index 0000000..abace0e
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/extras/ssl/openssl.cnf
@@ -0,0 +1,390 @@
+#
+# OpenSSL example configuration file.
+# See doc/man5/config.pod for more info.
+#
+# This is mostly being used for generation of certificate requests,
+# but may be used for auto loading of providers
+
+# Note that you can include other files from the main configuration
+# file using the .include directive.
+#.include filename
+
+# This definition stops the following lines choking if HOME isn't
+# defined.
+HOME = .
+
+# Use this in order to automatically load providers.
+openssl_conf = openssl_init
+
+# Comment out the next line to ignore configuration errors
+config_diagnostics = 1
+
+# Extra OBJECT IDENTIFIER info:
+# oid_file = $ENV::HOME/.oid
+oid_section = new_oids
+
+# To use this configuration file with the "-extfile" option of the
+# "openssl x509" utility, name here the section containing the
+# X.509v3 extensions to use:
+# extensions =
+# (Alternatively, use a configuration file that has only
+# X.509v3 extensions in its main [= default] section.)
+
+[ new_oids ]
+# We can add new OIDs in here for use by 'ca', 'req' and 'ts'.
+# Add a simple OID like this:
+# testoid1=1.2.3.4
+# Or use config file substitution like this:
+# testoid2=${testoid1}.5.6
+
+# Policies used by the TSA examples.
+tsa_policy1 = 1.2.3.4.1
+tsa_policy2 = 1.2.3.4.5.6
+tsa_policy3 = 1.2.3.4.5.7
+
+# For FIPS
+# Optionally include a file that is generated by the OpenSSL fipsinstall
+# application. This file contains configuration data required by the OpenSSL
+# fips provider. It contains a named section e.g. [fips_sect] which is
+# referenced from the [provider_sect] below.
+# Refer to the OpenSSL security policy for more information.
+# .include fipsmodule.cnf
+
+[openssl_init]
+providers = provider_sect
+
+# List of providers to load
+[provider_sect]
+default = default_sect
+# The fips section name should match the section name inside the
+# included fipsmodule.cnf.
+# fips = fips_sect
+
+# If no providers are activated explicitly, the default one is activated implicitly.
+# See man 7 OSSL_PROVIDER-default for more details.
+#
+# If you add a section explicitly activating any other provider(s), you most
+# probably need to explicitly activate the default provider, otherwise it
+# becomes unavailable in openssl. As a consequence applications depending on
+# OpenSSL may not work correctly which could lead to significant system
+# problems including inability to remotely access the system.
+[default_sect]
+# activate = 1
+
+
+####################################################################
+[ ca ]
+default_ca = CA_default # The default ca section
+
+####################################################################
+[ CA_default ]
+
+dir = ./demoCA # Where everything is kept
+certs = $dir/certs # Where the issued certs are kept
+crl_dir = $dir/crl # Where the issued crl are kept
+database = $dir/index.txt # database index file.
+#unique_subject = no # Set to 'no' to allow creation of
+ # several certs with same subject.
+new_certs_dir = $dir/newcerts # default place for new certs.
+
+certificate = $dir/cacert.pem # The CA certificate
+serial = $dir/serial # The current serial number
+crlnumber = $dir/crlnumber # the current crl number
+ # must be commented out to leave a V1 CRL
+crl = $dir/crl.pem # The current CRL
+private_key = $dir/private/cakey.pem # The private key
+
+x509_extensions = usr_cert # The extensions to add to the cert
+
+# Comment out the following two lines for the "traditional"
+# (and highly broken) format.
+name_opt = ca_default # Subject Name options
+cert_opt = ca_default # Certificate field options
+
+# Extension copying option: use with caution.
+# copy_extensions = copy
+
+# Extensions to add to a CRL. Note: Netscape communicator chokes on V2 CRLs
+# so this is commented out by default to leave a V1 CRL.
+# crlnumber must also be commented out to leave a V1 CRL.
+# crl_extensions = crl_ext
+
+default_days = 365 # how long to certify for
+default_crl_days= 30 # how long before next CRL
+default_md = default # use public key default MD
+preserve = no # keep passed DN ordering
+
+# A few difference way of specifying how similar the request should look
+# For type CA, the listed attributes must be the same, and the optional
+# and supplied fields are just that :-)
+policy = policy_match
+
+# For the CA policy
+[ policy_match ]
+countryName = match
+stateOrProvinceName = match
+organizationName = match
+organizationalUnitName = optional
+commonName = supplied
+emailAddress = optional
+
+# For the 'anything' policy
+# At this point in time, you must list all acceptable 'object'
+# types.
+[ policy_anything ]
+countryName = optional
+stateOrProvinceName = optional
+localityName = optional
+organizationName = optional
+organizationalUnitName = optional
+commonName = supplied
+emailAddress = optional
+
+####################################################################
+[ req ]
+default_bits = 2048
+default_keyfile = privkey.pem
+distinguished_name = req_distinguished_name
+attributes = req_attributes
+x509_extensions = v3_ca # The extensions to add to the self signed cert
+
+# Passwords for private keys if not present they will be prompted for
+# input_password = secret
+# output_password = secret
+
+# This sets a mask for permitted string types. There are several options.
+# default: PrintableString, T61String, BMPString.
+# pkix : PrintableString, BMPString (PKIX recommendation before 2004)
+# utf8only: only UTF8Strings (PKIX recommendation after 2004).
+# nombstr : PrintableString, T61String (no BMPStrings or UTF8Strings).
+# MASK:XXXX a literal mask value.
+# WARNING: ancient versions of Netscape crash on BMPStrings or UTF8Strings.
+string_mask = utf8only
+
+# req_extensions = v3_req # The extensions to add to a certificate request
+
+[ req_distinguished_name ]
+countryName = Country Name (2 letter code)
+countryName_default = AU
+countryName_min = 2
+countryName_max = 2
+
+stateOrProvinceName = State or Province Name (full name)
+stateOrProvinceName_default = Some-State
+
+localityName = Locality Name (eg, city)
+
+0.organizationName = Organization Name (eg, company)
+0.organizationName_default = Internet Widgits Pty Ltd
+
+# we can do this but it is not needed normally :-)
+#1.organizationName = Second Organization Name (eg, company)
+#1.organizationName_default = World Wide Web Pty Ltd
+
+organizationalUnitName = Organizational Unit Name (eg, section)
+#organizationalUnitName_default =
+
+commonName = Common Name (e.g. server FQDN or YOUR name)
+commonName_max = 64
+
+emailAddress = Email Address
+emailAddress_max = 64
+
+# SET-ex3 = SET extension number 3
+
+[ req_attributes ]
+challengePassword = A challenge password
+challengePassword_min = 4
+challengePassword_max = 20
+
+unstructuredName = An optional company name
+
+[ usr_cert ]
+
+# These extensions are added when 'ca' signs a request.
+
+# This goes against PKIX guidelines but some CAs do it and some software
+# requires this to avoid interpreting an end user certificate as a CA.
+
+basicConstraints=CA:FALSE
+
+# This is typical in keyUsage for a client certificate.
+# keyUsage = nonRepudiation, digitalSignature, keyEncipherment
+
+# PKIX recommendations harmless if included in all certificates.
+subjectKeyIdentifier=hash
+authorityKeyIdentifier=keyid,issuer
+
+# This stuff is for subjectAltName and issuerAltname.
+# Import the email address.
+# subjectAltName=email:copy
+# An alternative to produce certificates that aren't
+# deprecated according to PKIX.
+# subjectAltName=email:move
+
+# Copy subject details
+# issuerAltName=issuer:copy
+
+# This is required for TSA certificates.
+# extendedKeyUsage = critical,timeStamping
+
+[ v3_req ]
+
+# Extensions to add to a certificate request
+
+basicConstraints = CA:FALSE
+keyUsage = nonRepudiation, digitalSignature, keyEncipherment
+
+[ v3_ca ]
+
+
+# Extensions for a typical CA
+
+
+# PKIX recommendation.
+
+subjectKeyIdentifier=hash
+
+authorityKeyIdentifier=keyid:always,issuer
+
+basicConstraints = critical,CA:true
+
+# Key usage: this is typical for a CA certificate. However since it will
+# prevent it being used as an test self-signed certificate it is best
+# left out by default.
+# keyUsage = cRLSign, keyCertSign
+
+# Include email address in subject alt name: another PKIX recommendation
+# subjectAltName=email:copy
+# Copy issuer details
+# issuerAltName=issuer:copy
+
+# DER hex encoding of an extension: beware experts only!
+# obj=DER:02:03
+# Where 'obj' is a standard or added object
+# You can even override a supported extension:
+# basicConstraints= critical, DER:30:03:01:01:FF
+
+[ crl_ext ]
+
+# CRL extensions.
+# Only issuerAltName and authorityKeyIdentifier make any sense in a CRL.
+
+# issuerAltName=issuer:copy
+authorityKeyIdentifier=keyid:always
+
+[ proxy_cert_ext ]
+# These extensions should be added when creating a proxy certificate
+
+# This goes against PKIX guidelines but some CAs do it and some software
+# requires this to avoid interpreting an end user certificate as a CA.
+
+basicConstraints=CA:FALSE
+
+# This is typical in keyUsage for a client certificate.
+# keyUsage = nonRepudiation, digitalSignature, keyEncipherment
+
+# PKIX recommendations harmless if included in all certificates.
+subjectKeyIdentifier=hash
+authorityKeyIdentifier=keyid,issuer
+
+# This stuff is for subjectAltName and issuerAltname.
+# Import the email address.
+# subjectAltName=email:copy
+# An alternative to produce certificates that aren't
+# deprecated according to PKIX.
+# subjectAltName=email:move
+
+# Copy subject details
+# issuerAltName=issuer:copy
+
+# This really needs to be in place for it to be a proxy certificate.
+proxyCertInfo=critical,language:id-ppl-anyLanguage,pathlen:3,policy:foo
+
+####################################################################
+[ tsa ]
+
+default_tsa = tsa_config1 # the default TSA section
+
+[ tsa_config1 ]
+
+# These are used by the TSA reply generation only.
+dir = ./demoCA # TSA root directory
+serial = $dir/tsaserial # The current serial number (mandatory)
+crypto_device = builtin # OpenSSL engine to use for signing
+signer_cert = $dir/tsacert.pem # The TSA signing certificate
+ # (optional)
+certs = $dir/cacert.pem # Certificate chain to include in reply
+ # (optional)
+signer_key = $dir/private/tsakey.pem # The TSA private key (optional)
+signer_digest = sha256 # Signing digest to use. (Optional)
+default_policy = tsa_policy1 # Policy if request did not specify it
+ # (optional)
+other_policies = tsa_policy2, tsa_policy3 # acceptable policies (optional)
+digests = sha1, sha256, sha384, sha512 # Acceptable message digests (mandatory)
+accuracy = secs:1, millisecs:500, microsecs:100 # (optional)
+clock_precision_digits = 0 # number of digits after dot. (optional)
+ordering = yes # Is ordering defined for timestamps?
+ # (optional, default: no)
+tsa_name = yes # Must the TSA name be included in the reply?
+ # (optional, default: no)
+ess_cert_id_chain = no # Must the ESS cert id chain be included?
+ # (optional, default: no)
+ess_cert_id_alg = sha256 # algorithm to compute certificate
+ # identifier (optional, default: sha256)
+
+[insta] # CMP using Insta Demo CA
+# Message transfer
+server = pki.certificate.fi:8700
+# proxy = # set this as far as needed, e.g., http://192.168.1.1:8080
+# tls_use = 0
+path = pkix/
+
+# Server authentication
+recipient = "/C=FI/O=Insta Demo/CN=Insta Demo CA" # or set srvcert or issuer
+ignore_keyusage = 1 # quirk needed to accept Insta CA cert not including digitalsignature
+unprotected_errors = 1 # quirk needed to accept negative responses possibly not protected
+extracertsout = insta.extracerts.pem
+
+# Client authentication
+ref = 3078 # user identification
+secret = pass:insta # can be used for both client and server side
+
+# Generic message options
+cmd = ir # default operation, can be overridden on cmd line with, e.g., kur
+
+# Certificate enrollment
+subject = "/CN=openssl-cmp-test"
+newkey = insta.priv.pem
+out_trusted = apps/insta.ca.crt # does not include keyUsage digitalSignature
+certout = insta.cert.pem
+
+[pbm] # Password-based protection for Insta CA
+# Server and client authentication
+ref = $insta::ref # 3078
+secret = $insta::secret # pass:insta
+
+[signature] # Signature-based protection for Insta CA
+# Server authentication
+trusted = $insta::out_trusted # apps/insta.ca.crt
+
+# Client authentication
+secret = # disable PBM
+key = $insta::newkey # insta.priv.pem
+cert = $insta::certout # insta.cert.pem
+
+[ir]
+cmd = ir
+
+[cr]
+cmd = cr
+
+[kur]
+# Certificate update
+cmd = kur
+oldcert = $insta::certout # insta.cert.pem
+
+[rr]
+# Certificate revocation
+cmd = rr
+oldcert = $insta::certout # insta.cert.pem
diff --git a/ParlzDownloadMAX/PHP/bin/glib-2.dll b/ParlzDownloadMAX/PHP/bin/glib-2.dll
new file mode 100644
index 0000000..98125b2
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/glib-2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/gmodule-2.dll b/ParlzDownloadMAX/PHP/bin/gmodule-2.dll
new file mode 100644
index 0000000..58a77d8
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/gmodule-2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/gobject-2.dll b/ParlzDownloadMAX/PHP/bin/gobject-2.dll
new file mode 100644
index 0000000..2b26e12
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/gobject-2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/icudt77.dll b/ParlzDownloadMAX/PHP/bin/icudt77.dll
new file mode 100644
index 0000000..1a2beb3
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/icudt77.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/icuin77.dll b/ParlzDownloadMAX/PHP/bin/icuin77.dll
new file mode 100644
index 0000000..991c5f5
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/icuin77.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/icuio77.dll b/ParlzDownloadMAX/PHP/bin/icuio77.dll
new file mode 100644
index 0000000..112daf0
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/icuio77.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/icuuc77.dll b/ParlzDownloadMAX/PHP/bin/icuuc77.dll
new file mode 100644
index 0000000..dbc014b
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/icuuc77.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/lib/enchant/libenchant2_hunspell.dll b/ParlzDownloadMAX/PHP/bin/lib/enchant/libenchant2_hunspell.dll
new file mode 100644
index 0000000..0c12c59
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/lib/enchant/libenchant2_hunspell.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libcrypto-3-x64.dll b/ParlzDownloadMAX/PHP/bin/libcrypto-3-x64.dll
new file mode 100644
index 0000000..ee77252
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libcrypto-3-x64.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libenchant2.dll b/ParlzDownloadMAX/PHP/bin/libenchant2.dll
new file mode 100644
index 0000000..e16757c
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libenchant2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libpq.dll b/ParlzDownloadMAX/PHP/bin/libpq.dll
new file mode 100644
index 0000000..8d4534d
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libpq.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libsasl.dll b/ParlzDownloadMAX/PHP/bin/libsasl.dll
new file mode 100644
index 0000000..a7614ee
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libsasl.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libsodium.dll b/ParlzDownloadMAX/PHP/bin/libsodium.dll
new file mode 100644
index 0000000..5a7d1df
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libsodium.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libsqlite3.dll b/ParlzDownloadMAX/PHP/bin/libsqlite3.dll
new file mode 100644
index 0000000..e52302b
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libsqlite3.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libssh2.dll b/ParlzDownloadMAX/PHP/bin/libssh2.dll
new file mode 100644
index 0000000..e92a397
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libssh2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/libssl-3-x64.dll b/ParlzDownloadMAX/PHP/bin/libssl-3-x64.dll
new file mode 100644
index 0000000..f1a6a80
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/libssl-3-x64.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/license.txt b/ParlzDownloadMAX/PHP/bin/license.txt
new file mode 100644
index 0000000..0815d7e
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/license.txt
@@ -0,0 +1,68 @@
+--------------------------------------------------------------------
+ The PHP License, version 3.01
+Copyright (c) 1999 - 2024 The PHP Group. All rights reserved.
+--------------------------------------------------------------------
+
+Redistribution and use in source and binary forms, with or without
+modification, is permitted provided that the following conditions
+are met:
+
+ 1. Redistributions of source code must retain the above copyright
+ notice, this list of conditions and the following disclaimer.
+
+ 2. Redistributions in binary form must reproduce the above copyright
+ notice, this list of conditions and the following disclaimer in
+ the documentation and/or other materials provided with the
+ distribution.
+
+ 3. The name "PHP" must not be used to endorse or promote products
+ derived from this software without prior written permission. For
+ written permission, please contact group@php.net.
+
+ 4. Products derived from this software may not be called "PHP", nor
+ may "PHP" appear in their name, without prior written permission
+ from group@php.net. You may indicate that your software works in
+ conjunction with PHP by saying "Foo for PHP" instead of calling
+ it "PHP Foo" or "phpfoo"
+
+ 5. The PHP Group may publish revised and/or new versions of the
+ license from time to time. Each version will be given a
+ distinguishing version number.
+ Once covered code has been published under a particular version
+ of the license, you may always continue to use it under the terms
+ of that version. You may also choose to use such covered code
+ under the terms of any subsequent version of the license
+ published by the PHP Group. No one other than the PHP Group has
+ the right to modify the terms applicable to covered code created
+ under this License.
+
+ 6. Redistributions of any form whatsoever must retain the following
+ acknowledgment:
+ "This product includes PHP software, freely available from
+ ".
+
+THIS SOFTWARE IS PROVIDED BY THE PHP DEVELOPMENT TEAM ``AS IS'' AND
+ANY EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO,
+THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A
+PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE PHP
+DEVELOPMENT TEAM OR ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
+INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
+(INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
+SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
+HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
+STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
+ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
+OF THE POSSIBILITY OF SUCH DAMAGE.
+
+--------------------------------------------------------------------
+
+This software consists of voluntary contributions made by many
+individuals on behalf of the PHP Group.
+
+The PHP Group can be contacted via Email at group@php.net.
+
+For more information on the PHP Group and the PHP project,
+please see .
+
+PHP includes the Zend Engine, freely available at
+.
diff --git a/ParlzDownloadMAX/PHP/bin/news.txt b/ParlzDownloadMAX/PHP/bin/news.txt
new file mode 100644
index 0000000..dc16fd8
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/news.txt
@@ -0,0 +1,1513 @@
+PHP NEWS
+|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
+27 Aug 2026, PHP 8.5.10
+
+- Core:
+ . Fixed bug GH-22782 (Const expr FCC crashes under preloading). (Arnaud)
+ . Fixed bug GH-23088 (Stack overflow when comparing deeply nested arrays).
+ (Lazizbek Ergashev)
+
+- Date:
+ . Fixed leak on double DatePeriod::__construct() call. (ilutov)
+
+- DOM:
+ . Fixed bug GH-23116 (Stack overflow when normalizing a deeply nested
+ DOMDocument). (Lazizbek Ergashev)
+ . Fixed bug GH-23117 (Stack overflow when normalizing a deeply nested
+ Dom\XMLDocument). (Lazizbek Ergashev)
+ . Fixed bug GH-22825 (DOMElement::setAttribute() fails silently when the DTD
+ declares a default value for the attribute). (iliaal)
+ . Fixed bug GH-23120 (Stack overflow when comparing deeply nested DOM nodes
+ with DOMNode::isEqualNode()). (Weilin Du)
+
+- Exif:
+ . Fixed exif_read_data() allocating a HEIF meta box larger than the file
+ it came from. (iliaal)
+
+- Intl:
+ . Fixed IntlListFormatter::__construct() leaving stale global error state
+ after successful calls. (Weilin Du)
+
+- Opcache:
+ . Fixed GH-22693 (DT_TEXTREL in JIT-generated TLS access on x86_64).
+ (David Carlier)
+ . Fixed bug GH-22763 (JIT fails to clear ZREG_TYPE_ONLY after setting reg).
+ (Arnaud)
+ . Fixed bug GH-22857 (Function JIT emits wrong code for FETCH_OBJ_FUNC_ARG on
+ a property hook getter, losing register-held variables). (Zhao Hao)
+ . Fixed bug GH-22916 (Preserve parent regs in zend_jit_deoptimizer_start()).
+ (Arnaud)
+
+- OpenSSL:
+ . Fix missing error check on invalid alpn protocols. (ndossche)
+
+- MBString:
+ . Fixed bug GH-22779 (mb_strrpos() returns the wrong position for a negative
+ offset in a non-UTF-8 encoding). (Eyüp Can Akman)
+ . Fixed bug GH-21036 (mb_ereg_search_getregs() crashes after mb_eregi()
+ invalidates the regex cache). (Matthias Goergens)
+
+- PCRE:
+ . Fixed bug GH-21134 (Crash with \C + UTF-8). Using \C in UTF-8 patterns is
+ now forbidden. (Arnaud)
+
+- PDO_ODBC:
+ . Fixed bug GH-23016 (NULL values in long columns come back as garbage
+ binary strings). (Calvin Buckley, iliaal)
+
+- PDO_PGSQL:
+ . Fixed several lazy fetch (PDO::ATTR_PREFETCH => 0) defects: an infinite
+ loop when cleaning up a fetch left in a COPY, a use-after-free when a
+ statement with emulated or disabled prepares is destroyed, a connection
+ left busy for the next fetch, and rows delivered from a result another
+ statement took over. (KentarouTakeda)
+
+- Reflection:
+ . Fixed bug GH-22905 (Reflection exception messages truncate on null bytes).
+ (DanielEScherzer)
+ . Fixed ReflectionProperty::isLazy() and skipLazyInitialization() using the
+ parent slot when a child class hooks an inherited property. (iliaal)
+ . Fixed segfault in ReflectionMethod::createFromMethodName() on an
+ uninstantiable subclass. (iliaal)
+
+- Session:
+ . Fix corruption in mod_mm. (ndossche)
+ . Fixed bug GH-23043 (broken session id code can cause zend_mm_heap
+ corrupted). (ndossche)
+
+- SimpleXML:
+ . Fixed integer element offsets that cannot resolve aliasing an existing
+ element. (iliaal)
+ . Fixed segfault when comparing uninitialized SimpleXMLElement
+ instances. (iliaal)
+
+- Sockets:
+ . Fixed socket_set_option() validation error messages for UDP_SEGMENT and
+ SO_LINGER options. (Weilin Du)
+ . Fixed various memory related issues in ext/sockets. (David Carlier)
+
+- SQLite:
+ . Fix leak when trying to close db if blob stream is still open. (ndossche)
+
+- Standard:
+ . Fixed bug GH-23111 (Stack overflow in array_walk_recursive() with deeply
+ nested arrays). (Lazizbek Ergashev)
+ . Fixed bug GH-23113 (Stack overflow in array_replace_recursive() with deeply
+ nested arrays). (Lazizbek Ergashev)
+ . Fixed bug GH-23115 (Stack overflow in compact() with deeply nested
+ arrays). (Lazizbek Ergashev)
+
+- Streams:
+ . Fixed bug GH-15836 (Use-after-free when a user stream filter accesses
+ $this->stream during the close flush). (iliaal)
+
+- XSL:
+ . Fixed use-after-free when a DOMDocument subclass __clone() retains the
+ stylesheet copy made by XSLTProcessor::importStylesheet(). (iliaal)
+
+30 Jul 2026, PHP 8.5.9
+
+- Core:
+ . Fixed bug GH-22290 (AST pretty printing does not correctly handle strings
+ containing NUL). (iliaal)
+ . Fixed bug GH-22206 (missing return in global register detection).
+ (P3p111n0)
+ . Lock unmodified readonly properties for modification after clone-with.
+ (NickSdot)
+
+- BCMath:
+ . Fixed GHSA-x692-q9x7-8c3f (Out-of-bounds write in bccomp()).
+ (CVE-2026-17544) (Recep Asan)
+
+- Calendar:
+ . Fixed bug GH-22602 (gregoriantojd() and juliantojd() integer overflow with
+ INT_MAX year). (arshidkv12)
+
+- Date:
+ . Update timelib to 2022.17. (Derick)
+ . Fixed bug GH-19803 (Parsing a string with a single white space does create
+ an error). (Derick)
+ . Fixed Unix timestamps in February of the year 0 are misparsed with
+ @-notation. (LukasGelbmann)
+ . Fixed bug GH-11310 (__debugInfo does nothing on userland classes extending
+ Date classes). (Derick)
+
+- DBA:
+ . Fixed OOB read on malformed length field in dba flatfile handler. (alhudz)
+
+- DOM:
+ . Fixed bug GH-22570 (Stack overflow when serializing a deeply nested
+ Dom\XMLDocument). (iliaal)
+ . Fixed getElementsByClassName() item() returning the wrong element on
+ random access. (David Carlier)
+
+- Exif:
+ . Fixed bug GH-11020 (exif_read_data() emits a spurious "Illegal IFD size"
+ warning when an IFD is not followed by a next-IFD offset). (Eyüp Can Akman)
+
+- GD:
+ . Upgrade libgd. (CVE-2026-9672) (Pierre Joye)
+
+- Hash:
+ . Fixed bug GH-18173 (ext/hash relies on implementation-defined malloc
+ alignment). (iliaal)
+
+- ODBC:
+ . Fixed bug GH-22668 (Heap buffer over-read when a column value exceeds the
+ driver-reported display size). (iliaal)
+
+- Opcache:
+ . Fixed bug GH-22158 (Tracing JIT dispatches the observer begin handler
+ through the wrong run_time_cache slot on megamorphic calls). (ptondereau,
+ iliaal)
+ . Fixed bug GH-22443 (Tracing JIT SIGSEGV on megamorphic dynamic calls from
+ an undereferenced run_time_cache map_ptr offset). (iliaal)
+ . Fixed bug GH-21770 (Infinite recursion in property hook getter in opcache
+ preloaded trait). (iliaal)
+
+- OpenSSL:
+ . Fixed timeout for supplemental read at end of a blocking stream in SSL
+ stream wrapper. (ilutov)
+
+- Intl:
+ . Fixed Locale::lookup() and locale_lookup() to return NULL instead of the
+ fallback locale when a language tag cannot be canonicalized. (Weilin Du)
+ . Fixed memory leaks when calling Collator::__construct() or
+ Spoofchecker::__construct() twice. (Weilin Du)
+ . Fixed memory leak when calling IntlListFormatter::__construct() twice.
+ (Weilin Du)
+ . Fixed IntlChar methods leaving stale global error state after successful
+ calls. (Xuyang Zhang)
+
+- PDO_ODBC:
+ . Fixed bug GH-20726 (Crash with ODBC connection pooling when the DSN
+ carries no credentials). (iliaal)
+ . Fixed bug GH-22667 (Heap buffer over-read when a column value exceeds the
+ driver-reported display size). (iliaal)
+ . Fixed bug GH-22666 (Heap buffer overflow when an output parameter value is
+ longer than the declared maxlen). (iliaal)
+ . Fixed bug GH-22665 (Out-of-bounds write when the ODBC driver reports a
+ diagnostic message length beyond the error buffer). (iliaal)
+
+- PGSQL:
+ . Fixed GHSA-7qpv-r5mr-78m4 (SQL injection via E'...' backslash breakout).
+ (CVE-2026-17543) (ilutov)
+
+- Phar:
+ . Fixed inconsistent handling of the magic ".phar" directory. Paths such as
+ "/.phar" remain protected, while non-magic paths that merely start with
+ ".phar" are handled consistently across file and directory creation,
+ copying, ArrayAccess, stream lookup, directory iteration and extraction.
+ (Weilin Du)
+ . Fixed GHSA-vc5h-9ppw-p5f3 (Crash via recursive symlinks). (CVE-2026-7260)
+ (Jakub Zelenka)
+
+- PHPDBG:
+ . Fixed bug GH-17387 (Trivial crash in phpdbg lexer). (iliaal)
+ . Fixed fleaked lowercased lookup keys in phpdbg_resolve_opline_break.
+ (jorgsowa)
+ . Fixed off-by-one in phpdbg_safe_class_lookup() causing class lookups to
+ always fail during phpdbg's signal-safe interruption path. (jorgsowa)
+
+- Reflection:
+ . Fixed bug GH-22324 (Ignore leading namespace separator in
+ ReflectionParameter::__construct()). (jorgsowa)
+ . Fixed bug GH-22441 (ReflectionClass::hasProperty() and getProperty() ignore
+ dynamic properties shadowing a private parent property). (iliaal)
+ . Fixed bug GH-22658 (ReflectionConstant::__toString() with a string value
+ with null bytes truncates output). (DanielEScherzer)
+ . Fixed bug GH-22683 (Reflection(Class)Constant::__toString() should not warn
+ on NAN conversions). (Khaled Alam)
+ . Fixed bug GH-22681 (Reflection*::__toString() truncates on null bytes).
+ (DanielEScherzer)
+
+- Session:
+ . Fixed bug GH-21314 (Different session garbage collector behavior between
+ PHP 8.3 and PHP 8.5). (jorgsowa)
+
+- SPL:
+ . Fix class_parents for classes with leading slash in non-autoload mode.
+ (jorgsowa)
+ . Ignore leading back-slash in class_parents(), class_implements(), and
+ class_uses(). (jorgsowa)
+ . Fixed bug GH-16217 (SplFileObject::fputcsv() on an uninitialized object
+ segfaults). (iliaal)
+
+- Standard:
+ . Fixed bug GH-22395 (base_convert() outputs at most 64 characters).
+ (Weilin Du)
+ . Fixed bug GH-22678 (Use-after-free in array_multisort() when the comparator
+ mutates the array being sorted). (azchin, iliaal)
+
+- URI:
+ . Fixed behavior of Uri\WhatWg\Url wither methods with regards to empty
+ opaque hosts. (kocsismate)
+ . Fixed bug GH-22628 (Percent-encoding of caret in WHATWG URL paths is not
+ performed). (kocsismate)
+ . Fixed bug GH-22629 (WHATWG Validation error incorrect with empty host and
+ non-empty userinfo). (kocsismate)
+
+- Zip:
+ . Fixed bug GH-22649 (ZipArchive::setCommentName() and setCommentIndex()
+ could crash after overwriting an entry and resetting its inherited
+ unchanged comment). (Weilin Du)
+ . Fixed bug GH-21705 (ZipArchive::getFromIndex() ignores
+ ZipArchive::FL_UNCHANGED for deleted entries). (Weilin Du)
+
+02 Jul 2026, PHP 8.5.8
+
+- Core:
+ . Fixed bug GH-22280 (Incorrect compile error for goto to label preceding
+ try/finally block). (Pratik Bhujel)
+ . Fixed bug GH-22112 (Assertion when error handler throws during NaN to
+ bool/string coercion). (iliaal)
+
+- BCMath:
+ . Fixed issues with oversized allocations and signed overflow in bcround()
+ and BcMath\Number::round(). (edorian)
+
+- Date:
+ . Fix incorrect recurrence check of DatePeriod::createFromISO8601String().
+ (ndossche)
+
+- Exif:
+ . Read correct value for single and double tags. (ndossche)
+
+- GD:
+ . Fixed bug GH-22121 (Double free in gdImageSetStyle() after
+ overflow-triggered early return). (iliaal)
+
+- Intl:
+ . Fix incorrect argument positions for invalid start/end arguments in
+ transliterator_transliterate().
+ (Weilin Du)
+ . Fixed IntlTimeZone::getDisplayName() to synchronize object error state
+ for invalid display types. (Weilin Du)
+
+- Lexbor:
+ . Merge patch c3a6847. (ilutov, timwolla)
+
+- Opcache:
+ . Fixed bug GH-22265 (Another tailcall vm_interrupt bug). (Levi Morrison)
+ . Fixed bug GH-20469 (Unsafe inheritance cache replay with reentrant
+ autoloading). (Levi Morrison)
+ . Fixed bug GH-21972 (Corrupted variable type when a typed by-value return
+ contains a reference wrapper). (Weilin Du)
+
+- OpenSSL:
+ . Fixed bug GH-22187 (Memory corruption (zend_mm_heap corrupted) in
+ openssl_encrypt with AES-WRAP-PAD). (CVE-2026-14355) (David Carlier)
+
+- Phar:
+ . Fixed a bypass of the magic ".phar" directory protection in
+ Phar::addEmptyDir() for paths starting with "/.phar", while allowing
+ non-magic directory names that merely share the ".phar" prefix. (Weilin Du)
+ . Fixed an integer underflow when parsing ZIP extra fields. (Weilin Du)
+
+- Reflection:
+ . Preserve class-name case in ReflectionClass::getProperty() error messages
+ and autoloading. (jorgsowa)
+
+- SOAP:
+ . Fixed bug GH-22218 (SoapServer::handle() crash on $_SERVER not being
+ an array). (David Carlier / Rex-Reynolds)
+ . Fixed bug GH-22285 (Soap server requires the raw input to be passed
+ to $server->handle). (David Carlier / ndossche)
+
+- Sqlite:
+ . Fix error checks for column retrieval. (ndossche)
+
+- URI:
+ . Add LEXBOR_STATIC to CFLAGS_URI on Windows so ext/uri does not see
+ LXB_API as __declspec(dllimport) when linked statically into PHP.
+ (Luther Monson)
+ . Clean error logs before each Uri\WhatWg\Url wither call so that errors from
+ previous wither calls are not returned the next time a UrlValidationError
+ is thrown. (kocsismate)
+
+- Zip:
+ . Fixed error-related memory leaks. (ndossche)
+
+- Zlib:
+ . Fixed memory leak if deflate initialization fails and there is a dict.
+ (ndossche)
+ . Fixed memory leak in inflate_add(). (ndossche)
+
+02 Jun 2026, PHP 8.5.7
+
+- CLI:
+ . Fixed bug GH-21901 (Stale getopt() optional value). (onthebed)
+
+- Core:
+ . Fixed bug GH-22071 (JIT assertion on abstract static method call).
+ (David Carlier)
+
+- Date:
+ . Fixed bug GH-18422 (int overflow in php_date_llabs). (iliaal)
+
+- DOM:
+ . Fixed bug GH-22077 (UAF in custom XPath function).
+ (afflerbach/David Carlier)
+
+- Opcache:
+ . Fixed tracing JIT crash when a VM interrupt is handled during an observed
+ user function call. (Levi Morrison)
+ . Fixed bug GH-21746 (Segfault with tracing JIT). (Arnaud)
+ . Fixed bug GH-22004 (Assertion failure at ext/opcache/jit/zend_jit_trace.c).
+ (Arnaud)
+ . Fixed tailcall VM crash when a VM interrupt is handled from a VM helper.
+ (Levi Morrison, Arnaud)
+
+- OpenSSL:
+ . Fix compatibility issues with OpenSSL 4.0. (jordikroon, Remi)
+
+- Standard:
+ . Fixed bug GH-21689 (version_compare() incorrectly handles versions ending
+ with a dot). (timwolla)
+
+- URI:
+ . Fixed CVE-2026-44927 (In uriparser before 1.0.2, there is pointer
+ difference truncation to int in various places). (CVE-2026-44927)
+ (Sebastian Pipping)
+ . Fixed CVE-2026-44928 (In uriparser before 1.0.2, the function family
+ EqualsUri can misclassify two unequal URIs as equal). (CVE-2026-44928)
+ (Sebastian Pipping)
+
+07 May 2026, PHP 8.5.6
+
+- Core:
+ . Fixed bug GH-19983 (GC assertion failure with fibers, generators and
+ destructors). (iliaal)
+ . Fixed ZEND_API mismatch on zend_ce_closure forward decl for Windows+Clang.
+ (henderkes)
+ . Fixed bug GH-21504 (Incorrect RC-handling for ZEND_EXT_STMT op1). (ilutov)
+ . Fixed bug GH-21478 (Forward property operations to real instance for
+ initialized lazy proxies). (iliaal)
+ . Fixed bug GH-21605 (Missing addref for Countable::count()). (ilutov)
+ . Fixed bug GH-21699 (Assertion failure in shutdown_executor when resolving
+ self::/parent::/static:: callables if the error handler throws). (macoaure)
+ . Fixed bug GH-21603 (Missing addref for __unset). (ilutov)
+ . Fixed bug GH-21760 (Trait with class constant name conflict against
+ enum case causes SEGV). (Pratik Bhujel)
+
+- CLI:
+ . Fixed bug GH-21754 (`--rf` command line option with a method triggers
+ ext/reflection deprecation warnings). (DanielEScherzer)
+
+- Curl:
+ . Add support for brotli and zstd on Windows. (Shivam Mathur)
+
+- DOM:
+ . Fixed GHSA-4jhr-8w89-j733 and GH-21566 (Dom\XMLDocument::C14N() emits
+ duplicate xmlns declarations after setAttributeNS()). (CVE-2026-7263)
+ (David Carlier)
+
+- FPM:
+ . Fixed GHSA-7qg2-v9fj-4mwv (XSS within status endpoint). (CVE-2026-6735)
+ (Jakub Zelenka)
+
+- Iconv:
+ . Fixed bug GH-17399 (iconv memory leak on bailout). (iliaal)
+
+- Lexbor:
+ . Upgrade to lexbor v2.7.0. (CVE-2026-29078, CVE-2026-29079)
+ (ndossche, ilutov)
+
+- MBString:
+ . Fixed GHSA-wm6j-2649-pv75 (Null pointer dereference in
+ php_mb_check_encoding() via mb_ereg_search_init()). (CVE-2026-7259)
+ (vi3tL0u1s)
+ . Fixed GHSA-74r9-qxhc-fx53 (Out-of-bounds access in mbfl_name2encoding_ex()).
+ (CVE-2026-6104) (ilutov)
+
+- Opcache:
+ . Fixed bug GH-21158 (JIT: Assertion jit->ra[var].flags & (1<<0) failed in
+ zend_jit_use_reg). (Arnaud)
+ . Fixed bug GH-21593 (Borked function JIT JMPNZ smart branch). (ilutov)
+ . Fixed bug GH-21460 (COND optimization regression). (Dmitry, Arnaud)
+ . Fixed faulty returns out of zend_try block in zend_jit_trace(). (ilutov)
+
+- OpenSSL:
+ . Fix memory leak regression in openssl_pbkdf2(). (ndossche)
+ . Fix a bunch of memory leaks and crashes on edge cases. (ndossche)
+
+- PDO_Firebird:
+ . Fixed GHSA-w476-322c-wpvm (SQL injection via NUL bytes in quoted strings).
+ (CVE-2025-14179) (SakiTakamachi)
+
+- PDO_PGSQL:
+ . Fixed bug GH-21683 (pdo_pgsql throws with ATTR_PREFETCH=0
+ on empty result set). (thomasschiet)
+
+- Phar:
+ . Restore is_link handler in phar_intercept_functions_shutdown. (iliaal)
+ . Fixed bug GH-21797 (phar: NULL dereference in Phar::webPhar() when
+ SCRIPT_NAME is absent from SAPI environment). (iliaal)
+ . Fix memory leak in Phar::offsetGet(). (iliaal)
+ . Fix memory leak in phar_add_file(). (iliaal)
+ . Fixed bug GH-21799 (phar: propagate phar_stream_flush return value from
+ phar_stream_close). (iliaal)
+ . Fix memory leak in phar_verify_signature() when md_ctx is invalid.
+ (JarneClauw)
+
+- Random:
+ . Fixed bug GH-21731 (Random\Engine\Xoshiro256StarStar::__unserialize()
+ accepts all-zero state). (iliaal)
+
+- Session:
+ . Fixed memory leak when session GC callback return a refcounted value.
+ (jorgsowa)
+
+- SOAP:
+ . Fixed GHSA-85c2-q967-79q5 (Stale SOAP_GLOBAL(ref_map) pointer with Apache
+ Map). (CVE-2026-6722) (ilutov)
+ . Fixed GHSA-m33r-qmcv-p97q (Use-after-free after header parsing failure with
+ SOAP_PERSISTENCE_SESSION). (CVE-2026-7261) (ilutov)
+ . Fixed GHSA-hmxp-6pc4-f3vv (Broken Apache map value NULL check).
+ (CVE-2026-7262) (ilutov)
+
+- SPL:
+ . Fixed bug GH-21499 (RecursiveArrayIterator getChildren UAF after parent
+ free). (Girgias)
+ . Fix concurrent iteration and deletion issues in SplObjectStorage.
+ (ndossche)
+
+- Sqlite3:
+ . Fixed wrong free list comparator pointer type. (David Carlier)
+
+- Standard:
+ . Fixed GHSA-96wq-48vp-hh57 (Signed integer overflow of char array offset).
+ (CVE-2026-7568) (TimWolla)
+ . Fixed GHSA-m8rr-4c36-8gq4 (Consistently pass unsigned char to ctype.h
+ functions). (CVE-2026-7258) (ilutov)
+
+- Streams:
+ . Fixed bug GH-21468 (Segfault in file_get_contents w/ a https URL
+ and a proxy set). (CVE-2026-12184) (ndossche)
+
+- URI:
+ . Fixed CVE-2026-42371 (uriparser before 1.0.1 has numeric truncation in
+ text range comparison). (CVE-2026-42371) (Joshua W. Windle)
+
+26 Mar 2026, PHP 8.5.5
+
+- Core:
+ . Fixed bug GH-20672 (Incorrect property_info sizing for locally shadowed
+ trait properties). (ilutov)
+ . Fixed bugs GH-20875, GH-20873, GH-20854 (Propagate IN_GET guard in
+ get_property_ptr_ptr for lazy proxies). (iliaal)
+
+- Bz2:
+ . Fix truncation of total output size causing erroneous errors. (ndossche)
+
+- DOM:
+ . Fixed bug GH-21486 (Dom\HTMLDocument parser mangles xml:space and
+ xml:lang attributes). (ndossche)
+
+- FFI:
+ . Fixed resource leak in FFI::cdef() onsymbol resolution failure.
+ (David Carlier)
+
+- GD:
+ . Fixed bug GH-21431 (phpinfo() to display libJPEG 10.0 support).
+ (David Carlier)
+
+- Opcache:
+ . Fixed bug GH-21052 (Preloaded constant erroneously propagated to file-cached
+ script). (ilutov)
+ . Fixed bug GH-20838 (JIT compiler produces wrong arithmetic results).
+ (Dmitry, iliaal)
+ . Fixed bug GH-21267 (JIT tracing: infinite loop on FETCH_OBJ_R with
+ IS_UNDEF property in polymorphic context). (Dmitry, iliaal)
+ . Fixed bug GH-21395 (uaf in jit). (ndossche)
+
+- OpenSSL:
+ . Fixed bug GH-21083 (Skip private_key_bits validation for EC/curve-based
+ keys). (iliaal)
+ . Fix missing error propagation for BIO_printf() calls. (ndossche)
+
+- PCNTL:
+ . Fixed signal handler installation on AIX by bumping the storage size of the
+ num_signals global. (Calvin Buckley)
+
+- PCRE:
+ . Fixed re-entrancy issue on php_pcre_match_impl, php_pcre_replace_impl,
+ php_pcre_split_impl, and php_pcre_grep_impl. (David Carlier)
+
+- Phar:
+ . Fixed bug GH-21333 (use after free when unlinking entries during iteration
+ of a compressed phar). (David Carlier)
+
+- SNMP:
+ . Fixed bug GH-21336 (SNMP::setSecurity() undefined behavior with
+ NULL arguments). (David Carlier)
+
+- SOAP:
+ . Fixed Set-Cookie parsing bug wrong offset while scanning attributes.
+ (David Carlier)
+
+- SPL:
+ . Fixed bug GH-21454 (missing write lock validation in SplHeap).
+ (ndossche)
+
+- Standard:
+ . Fixed bug GH-20906 (Assertion failure when messing up output buffers).
+ (ndossche)
+ . Fixed bug GH-20627 (Cannot identify some avif images with getimagesize).
+ (y-guyon)
+ . Fixed bug GH-22171 (Invalid auth header generation in
+ http(s) stream wrapper). (David Carlier)
+
+- Sysvshm:
+ . Fix memory leak in shm_get_var() when variable is corrupted. (ndossche)
+
+- XSL:
+ . Fix GH-21357 (XSLTProcessor works with DOMDocument, but fails with
+ Dom\XMLDocument). (ndossche)
+ . Fixed bug GH-21496 (UAF in dom_objects_free_storage).
+ (David Carlier/ndossche)
+
+12 Mar 2026, PHP 8.5.4
+
+- Core:
+ . Fixed bug GH-21029 (zend_mm_heap corrupted on Aarch64, LTO builds). (Arnaud)
+ . Fixed bug GH-21059 (Segfault when preloading constant AST closure). (ilutov)
+ . Fixed bug GH-21072 (Crash on (unset) cast in constant expression).
+ (arshidkv12)
+ . Fix deprecation now showing when accessing null key of an array with JIT.
+ (alexandre-daubois)
+ . Fixed bug GH-20657 (Assertion failure in zend_lazy_object_get_info triggered
+ by setRawValueWithoutLazyInitialization() and newLazyGhost()). (Arnaud)
+ . Fixed bug GH-20504 (Assertion failure in zend_get_property_guard when
+ accessing properties on Reflection LazyProxy via isset()). (Arnaud)
+ . Fixed OSS-Fuzz #478009707 (Borked assign-op/inc/dec on untyped hooked
+ property backing value). (ilutov)
+ . Fixed bug GH-21215 (Build fails with -std=). (Arnaud)
+ . Fixed bug GH-13674 (Build system installs libtool wrappers when using
+ slibtool). (Michael Orlitzky)
+
+- Curl:
+ . Don't truncate length. (ndossche)
+
+- Date:
+ . Fixed bug GH-20936 (DatePeriod::__set_state() cannot handle null start).
+ (ndossche)
+ . Fix timezone offset with seconds losing precision. (ndossche)
+
+- DOM:
+ . Fixed bug GH-21077 (Accessing Dom\Node::baseURI can throw TypeError).
+ (ndossche)
+ . Fixed bug GH-21097 (Accessing Dom\Node properties can can throw TypeError).
+ (ndossche)
+
+- LDAP:
+ . Fixed bug GH-21262 (ldap_modify() too strict controls argument validation
+ makes it impossible to unset attribute). (David Carlier)
+
+- MBString:
+ . Fixed bug GH-21223; mb_guess_encoding no longer crashes when passed huge
+ list of candidate encodings (with 200,000+ entries). (Jordi Kroon)
+
+- Opcache:
+ . Fixed bug GH-20718 ("Insufficient shared memory" when using JIT on Solaris).
+ (Petr Sumbera)
+ . Fixed bug GH-21227 (Borked SCCP of array containing partial object).
+ (ilutov)
+
+- OpenSSL:
+ . Fix a bunch of leaks and error propagation. (ndossche)
+
+- Windows:
+ . Fixed compilation with clang (missing intrin.h include). (Kévin Dunglas)
+
+29 Jan 2026, PHP 8.5.3
+
+- Core:
+ . Fixed bug GH-20806 (preserve_none feature compatiblity with LTO).
+ (henderkes)
+ . Fixed bug GH-20767 (build failure with musttail/preserve_none feature
+ on macOs). (David Carlier)
+ . Fixed bug GH-20837 (NULL dereference when calling ob_start() in shutdown
+ function triggered by bailout in php_output_lock_error()). (timwolla)
+ . Fix OSS-Fuzz #471533782 (Infinite loop in GC destructor fiber). (ilutov)
+ . Fix OSS-Fuzz #472563272 (Borked block_pass JMP[N]Z optimization). (ilutov)
+ . Fixed bug GH-20914 (Internal enums can be cloned and compared). (Arnaud)
+ . Fix OSS-Fuzz #474613951 (Leaked parent property default value). (ilutov)
+ . Fixed bug GH-20895 (ReflectionProperty does not return the PHPDoc of a
+ property if it contains an attribute with a Closure). (timwolla)
+ . Fixed bug GH-20766 (Use-after-free in FE_FREE with GC interaction). (Bob)
+ . Fix OSS-Fuzz #471486164 (Broken by-ref assignment to uninitialized hooked
+ backing value). (ilutov)
+ . Fix OSS-Fuzz #438780145 (Nested finally with repeated return type check may
+ uaf). (ilutov)
+ . Fixed bug GH-20905 (Lazy proxy bailing __clone assertion). (ilutov)
+ . Fixed bug GH-20479 (Hooked object properties overflow). (ndossche)
+
+- Date:
+ . Update timelib to 2022.16. (Derick)
+
+- DOM:
+ . Fixed GH-21041 (Dom\HTMLDocument corrupts closing tags within scripts).
+ (lexborisov)
+
+- MbString:
+ . Fixed bug GH-20833 (mb_str_pad() divide by zero if padding string is
+ invalid in the encoding). (ndossche)
+ . Fixed bug GH-20836 (Stack overflow in mb_convert_variables with
+ recursive array references). (alexandre-daubois)
+
+- Opcache:
+ . Fixed bug GH-20818 (Segfault in Tracing JIT with object reference).
+ (khasinski)
+
+- OpenSSL:
+ . Fix memory leaks when sk_X509_new_null() fails. (ndossche)
+ . Fix crash when in openssl_x509_parse() when i2s_ASN1_INTEGER() fails.
+ (ndossche)
+ . Fix crash in openssl_x509_parse() when X509_NAME_oneline() fails.
+ (ndossche)
+
+- Phar:
+ . Fixed bug GH-20882 (buildFromIterator breaks with missing base directory).
+ (ndossche)
+
+- PGSQL:
+ . Fixed INSERT/UPDATE queries building with PQescapeIdentifier() and possible
+ UB. (David Carlier)
+
+- Readline:
+ . Fixed bug GH-18139 (Memory leak when overriding some settings
+ via readline_info()). (ndossche)
+
+- SPL:
+ . Fixed bug GH-20856 (heap-use-after-free in SplDoublyLinkedList iterator
+ when modifying during iteration). (ndossche)
+
+- Standard:
+ . Fixed bug #74357 (lchown fails to change ownership of symlink with ZTS)
+ (Jakub Zelenka)
+ . Fixed bug GH-20843 (var_dump() crash with nested objects)
+ (David Carlier)
+
+15 Jan 2026, PHP 8.5.2
+
+- Core:
+ . Fix OSS-Fuzz #465488618 (Wrong assumptions when dumping function signature
+ with dynamic class const lookup default argument). (ilutov)
+ . Fixed bug GH-20695 (Assertion failure in normalize_value() when parsing
+ malformed INI input via parse_ini_string()). (ndossche)
+ . Fixed bug GH-20714 (Uncatchable exception thrown in generator). (ilutov)
+ . Fixed bug GH-20352 (UAF in php_output_handler_free via re-entrant
+ ob_start() during error deactivation). (ndossche)
+ . Fixed bug GH-20745 ("Casting out of range floats to int" applies to
+ strings). (Bob)
+
+- DOM:
+ . Fixed bug GH-20722 (Null pointer dereference in DOM namespace node cloning
+ via clone on malformed objects). (ndossche)
+ . Fixed bug GH-20444 (Dom\XMLDocument::C14N() seems broken compared
+ to DOMDocument::C14N()). (ndossche)
+
+- EXIF:
+ . Fixed bug GH-20631 (Integer underflow in exif HEIF parsing
+ when pos.size < 2). (Oblivionsage)
+
+- Intl:
+ . Fixed IntlListFormatter::getErrorCode() and getErrorMessage() not
+ reflecting format() failures. (Weilin Du)
+ . Fix leak in umsg_format_helper(). (ndossche)
+
+- LDAP:
+ . Fix memory leak in ldap_set_options(). (ndossche)
+
+- Lexbor:
+ . Fixed bug GH-20668 (\Uri\WhatWg\Url::withHost() crashes (SEGV) for URLs
+ using the file: scheme). (lexborisov)
+
+- Mbstring:
+ . Fixed bug GH-20674 (mb_decode_mimeheader does not handle separator).
+ (Yuya Hamada)
+
+- OpenSSL:
+ . Fixed bug GH-20802 (undefined behavior with invalid SNI_server_certs
+ options). (David Carlier)
+
+- PCNTL:
+ . Fixed bug with pcntl_getcpuaffinity() on solaris regarding invalid
+ process ids handling. (David Carlier)
+
+- Phar:
+ . Fixed bug GH-20732 (Phar::LoadPhar undefined behavior when reading fails).
+ (ndossche)
+ . Fix SplFileInfo::openFile() in write mode. (ndossche)
+ . Fix build on legacy OpenSSL 1.1.0 systems. (Giovanni Giacobbi)
+ . Fixed bug #74154 (Phar extractTo creates empty files). (ndossche)
+
+- Session:
+ . Fix support for MM module. (Michael Orlitzky)
+
+- Sqlite3:
+ . Fixed bug GH-20699 (SQLite3Result fetchArray return array|false,
+ null returned). (ndossche, plusminmax)
+
+- Standard:
+ . Fix error check for proc_open() command. (ndossche)
+ . Fix memory leak in mail() when header key is numeric. (Girgias)
+ . Fixed bug GH-20582 (Heap Buffer Overflow in iptcembed). (ndossche)
+
+- URI:
+ . Fixed bug GH-20771 (Assertion failure when getUnicodeHost() returns
+ empty string). (ndossche)
+
+- Zlib:
+ . Fix OOB gzseek() causing assertion failure. (ndossche)
+
+18 Dec 2025, PHP 8.5.1
+
+- Core:
+ . Sync all boost.context files with release 1.86.0. (mvorisek)
+ . Fixed bug GH-20435 (SensitiveParameter doesn't work for named argument
+ passing to variadic parameter). (ndossche)
+ . Fixed bug GH-20546 (preserve_none attribute configure check on macOs
+ issue). (David Carlier/cho-m)
+ . Fixed bug GH-20286 (use-after-destroy during userland stream_close()).
+ (ndossche, David Carlier)
+
+- Bz2:
+ . Fix assertion failures resulting in crashes with stream filter
+ object parameters. (ndossche)
+
+- DOM:
+ . Fix memory leak when edge case is hit when registering xpath callback.
+ (ndossche)
+ . Fixed bug GH-20395 (querySelector and querySelectorAll requires elements
+ in $selectors to be lowercase). (ndossche)
+ . Fix missing NUL byte check on C14NFile(). (ndossche)
+
+- Fibers:
+ . Fixed bug GH-20483 (ASAN stack overflow with fiber.stack_size INI
+ small value). (David Carlier)
+
+- Intl:
+ . Fixed bug GH-20426 (Spoofchecker::setRestrictionLevel() error message
+ suggests missing constants). (DanielEScherzer)
+
+- Lexbor:
+ . Fixed bug GH-20501 (\Uri\WhatWg\Url lose host after calling
+ withPath() or withQuery()). (lexborisov)
+ . Fixed bug GH-20502 (\Uri\WhatWg\Url crashes (SEGV) when parsing
+ malformed URL due to Lexbor memory corruption). (lexborisov)
+
+- LibXML:
+ . Fix some deprecations on newer libxml versions regarding input
+ buffer/parser handling. (ndossche)
+
+- mysqli:
+ . Make mysqli_begin_transaction() report errors properly. (Kamil Tekiela)
+
+- MySQLnd:
+ . Fixed bug GH-20528 (Regression breaks mysql connexion using an IPv6 address
+ enclosed in square brackets). (Remi)
+
+- Opcache:
+ . Fixed bug GH-20329 (opcache.file_cache broken with full interned string
+ buffer). (Arnaud)
+
+- PDO:
+ . Fixed bug GH-20553 (PDO::FETCH_CLASSTYPE ignores $constructorArgs in
+ PHP 8.5.0). (Girgias)
+ . Fixed GHSA-8xr5-qppj-gvwj (PDO quoting result null deref). (CVE-2025-14180)
+ (Jakub Zelenka)
+
+- Phar:
+ . Fixed bug GH-20442 (Phar does not respect case-insensitiveness of
+ __halt_compiler() when reading stub). (ndossche, TimWolla)
+ . Fix broken return value of fflush() for phar file entries. (ndossche)
+ . Fix assertion failure when fseeking a phar file out of bounds. (ndossche)
+
+- PHPDBG:
+ . Fixed ZPP type violation in phpdbg_get_executable() and phpdbg_end_oplog().
+ (Girgias)
+
+- SPL:
+ . Fixed bug GH-20614 (SplFixedArray incorrectly handles references
+ in deserialization). (ndossche)
+
+- Standard:
+ . Fix memory leak in array_diff() with custom type checks. (ndossche)
+ . Fixed bug GH-20583 (Stack overflow in http_build_query
+ via deep structures). (ndossche)
+ . Fixed GHSA-www2-q4fc-65wf (Null byte termination in dns_get_record()).
+ (ndossche)
+ . Fixed GHSA-h96m-rvf9-jgm2 (Heap buffer overflow in array_merge()).
+ (CVE-2025-14178) (ndossche)
+ . Fixed GHSA-3237-qqm7-mfv7 (Information Leak of Memory in getimagesize).
+ (CVE-2025-14177) (ndossche)
+
+- Streams:
+ . Fixed bug GH-20370 (User stream filters could violate typed property
+ constraints). (alexandre-daubois)
+
+- URI:
+ . Fixed bug GH-20366 (ext/uri incorrectly throws ValueError when encountering
+ null byte). (kocsismate)
+ . Fixed CVE-2025-67899 (uriparser through 0.9.9 allows unbounded recursion
+ and stack consumption). (Sebastian Pipping)
+
+- XML:
+ . Fixed bug GH-20439 (xml_set_default_handler() does not properly handle
+ special characters in attributes when passing data to callback). (ndossche)
+
+- Zip:
+ . Fix crash in property existence test. (ndossche)
+ . Don't truncate return value of zip_fread() with user sizes. (ndossche)
+
+- Zlib:
+ . Fix assertion failures resulting in crashes with stream filter
+ object parameters. (ndossche)
+
+20 Nov 2025, PHP 8.5.0
+
+- Core:
+ . Added the #[\NoDiscard] attribute to indicate that a function's return
+ value is important and should be consumed. (timwolla, edorian)
+ . Added the (void) cast to indicate that not using a value is intentional.
+ (timwolla, edorian)
+ . Added get_error_handler(), get_exception_handler() functions. (Arnaud)
+ . Added support for casts in constant expressions. (nielsdos)
+ . Added the pipe (|>) operator. (crell)
+ . Added support for `final` with constructor property promotion.
+ (DanielEScherzer)
+ . Added support for configuring the URI parser for the FTP/FTPS as well as
+ the SSL/TLS stream wrappers as described in
+ https://wiki.php.net/rfc/url_parsing_api#plugability. (kocsismate)
+ . Added PHP_BUILD_PROVIDER constant. (timwolla)
+ . Added PHP_BUILD_DATE constant. (cmb)
+ . Added support for Closures and first class callables in constant
+ expressions. (timwolla, edorian)
+ . Add support for backtraces for fatal errors. (enorris)
+ . Add clone-with support to the clone() function. (timwolla, edorian)
+ . Add RFC 3986 and WHATWG URL compliant APIs for URL parsing
+ and manipulation (kocsismate, timwolla)
+ . Fixed AST printing for immediately invoked Closure. (Dmitrii Derepko)
+ . Properly handle __debugInfo() returning an array reference. (nielsdos)
+ . Properly handle reference return value from __toString(). (nielsdos)
+ . Improved error message of UnhandledMatchError for
+ zend.exception_string_param_max_len=0. (timwolla)
+ . Fixed bug GH-15753 and GH-16198 (Bind traits before parent class). (ilutov)
+ . Fixed bug GH-17951 (memory_limit is not always limited by max_memory_limit).
+ (manuelm)
+ . Fixed bug GH-20183 (Stale EG(opline_before_exception) pointer through eval).
+ (ilutov)
+ . Fixed bug GH-20113 (Missing new Foo(...) error in constant expressions).
+ (ilutov)
+ . Fixed bug GH-19844 (Don't bail when closing resources on shutdown). (ilutov)
+ . Fixed bug GH-20177 (Accessing overridden private property in
+ get_object_vars() triggers assertion error). (ilutov)
+ . Fix OSS-Fuzz #447521098 (Fatal error during sccp shift eval). (ilutov)
+ . Fixed bug GH-20002 (Broken build on *BSD with MSAN). (outtersg)
+ . Fixed bug GH-19352 (Cross-compilation with musl C library).
+ (henderkes, Peter Kokot)
+ . Fixed bug GH-19765 (object_properties_load() bypasses readonly property
+ checks). (timwolla)
+ . Fixed hard_timeout with --enable-zend-max-execution-timers. (Appla)
+ . Fixed bug GH-19839 (Incorrect HASH_FLAG_HAS_EMPTY_IND flag on userland
+ array). (ilutov)
+ . Fixed bug GH-19823 (register_argc_argv deprecation emitted twice when
+ using OPcache). (timwolla)
+ . Fixed bug GH-19480 (error_log php.ini cannot be unset when open_basedir is
+ configured). (nielsdos)
+ . Fixed bug GH-19719 (Allow empty statements before declare(strict_types)).
+ (nielsdos)
+ . Fixed bug GH-19934 (CGI with auto_globals_jit=0 causes uouv). (ilutov)
+ . Fixed bug GH-19613 (Stale array iterator pointer). (ilutov)
+ . Fixed bug GH-19679 (zend_ssa_range_widening may fail to converge). (Arnaud)
+ . Fixed bug GH-19681 (PHP_EXPAND_PATH broken with bash 5.3.0). (Remi)
+ . Fixed bug GH-18850 (Repeated inclusion of file with __halt_compiler()
+ triggers "Constant already defined" warning). (ilutov)
+ . Fixed bug GH-19476 (pipe operator fails to correctly handle returning
+ by reference). (alexandre-daubois)
+ . Fixed bug GH-19081 (Wrong lineno in property error with constructor property
+ promotion). (ilutov)
+ . Fixed bug GH-17959 (Relax missing trait fatal error to error exception).
+ (ilutov)
+ . Fixed bug GH-18033 (NULL-ptr dereference when using register_tick_function
+ in destructor). (nielsdos)
+ . Fixed bug GH-18026 (Improve "expecting token" error for ampersand). (ilutov)
+ . The report_memleaks INI directive has been deprecated. (alexandre-daubois)
+ . Fixed OSS-Fuzz #439125710 (Pipe cannot be used in write context).
+ (nielsdos)
+ . Fixed bug GH-19548 (Shared memory violation on property inheritance).
+ (alexandre-daubois)
+ . Fixed bug GH-19544 (GC treats ZEND_WEAKREF_TAG_MAP references as WeakMap
+ references). (Arnaud, timwolla)
+ . Fixed bug GH-18373 (Don't substitute self/parent with anonymous class).
+ (ilutov)
+ . Fix support for non-userland stream notifiers. (timwolla)
+ . Fixed bug GH-19305 (Operands may be being released during comparison).
+ (Arnaud)
+ . Fixed bug GH-19306 (Generator can be resumed while fetching next value from
+ delegated Generator). (Arnaud)
+ . Fixed bug GH-19326 (Calling Generator::throw() on a running generator with
+ a non-Generator delegate crashes). (Arnaud)
+ . Fix OSS-Fuzz #427814452 (pipe compilation fails with assert).
+ (nielsdos, ilutov)
+ . Fixed bug GH-16665 (\array and \callable should not be usable in
+ class_alias). (nielsdos)
+ . Use `clock_gettime_nsec_np()` for high resolution timer on macOS
+ if available. (timwolla)
+ . Make `clone()` a function. (timwolla, edorian)
+ . Introduced the TAILCALL VM, enabled by default when compiling with Clang>=19
+ on x86_64 or aarch64. (Arnaud)
+ . Enacted the follow-up phase of the "Path to Saner Increment/Decrement
+ operators" RFC, meaning that incrementing non-numeric strings is now
+ deprecated. (Girgias).
+ . Various closure binding issues are now deprecated. (alexandre-daubois)
+ . Constant redeclaration has been deprecated. (alexandre-daubois)
+ . Marks the stack as non-executable on Haiku. (David Carlier)
+ . Deriving $_SERVER['argc'] and $_SERVER['argv'] from the query string is
+ now deprecated. (timwolla, nicolasgrekas)
+ . Using null as an array offset or when calling array_key_exists() is now
+ deprecated. (alexandre-daubois)
+ . The disable_classes INI directive has been removed. (Girgias)
+ . The locally predefined variable $http_response_header is deprecated.
+ (Girgias)
+ . Non-canonical cast names (boolean), (integer), (double), and (binary) have
+ been deprecated. (Girgias)
+ . The $exclude_disabled parameter of the get_defined_functions() function has
+ been deprecated, as it no longer has any effect since PHP 8.0. (Girgias)
+ . Terminating case statements with a semicolon instead of a colon has
+ been deprecated. (theodorejb)
+ . The backtick operator as an alias for shell_exec() has been deprecated.
+ (timwolla)
+ . Returning null from __debugInfo() has been deprecated. (DanielEScherzer)
+ . Support #[\Override] on properties. (Jiří Pudil)
+ . Destructing non-array values (other than NULL) using [] or list() now
+ emits a warning. (Girgias)
+ . Casting floats that are not representable as ints now emits a warning.
+ (Girgias)
+ . Casting NAN to other types now emits a warning. (Girgias)
+ . Implement GH-15680 (Enhance zend_dump_op_array to properly represent
+ non-printable characters in string literals). (nielsdos, WangYihang)
+ . Fixed bug GH-17442 (Engine UAF with reference assign and dtor). (nielsdos)
+ . Do not use RTLD_DEEPBIND if dlmopen is available. (Daniil Gentili)
+ . Added #[\DelayedTargetValidation] attribute. (DanielEScherzer)
+ . Support #[\Deprecated] on traits. (DanielEScherzer)
+
+- BCMath:
+ . Simplify `bc_divide()` code. (SakiTakamachi)
+ . If the result is 0, n_scale is set to 0. (SakiTakamachi)
+ . If size of BC_VECTOR array is within 64 bytes, stack area is now used.
+ (SakiTakamachi)
+ . Fixed bug GH-20006 (Power of 0 of BcMath number causes UB). (nielsdos)
+
+- Bz2:
+ . Fixed bug GH-19810 (Broken bzopen() stream mode validation). (ilutov)
+
+- CLI:
+ . Add --ini=diff to print INI settings changed from the builtin default.
+ (timwolla)
+ . Drop support for -z CLI/CGI flag. (nielsdos)
+ . Fixed GH-17956 - development server 404 page does not adapt to mobiles.
+ (pascalchevrel)
+ . Fix useless "Failed to poll event" error logs due to EAGAIN in CLI server
+ with PHP_CLI_SERVER_WORKERS. (leotaku)
+ . Fixed bug GH-19461 (Improve error message on listening error with IPv6
+ address). (alexandre-daubois)
+
+- COM:
+ . Fixed property access of PHP objects wrapped in variant. (cmb)
+ . Fixed method calls for PHP objects wrapped in variant. (cmb)
+
+- Curl:
+ . Added CURLFOLLOW_ALL, CURLFOLLOW_OBEYCODE and CURLFOLLOW_FIRSTONLY
+ values for CURLOPT_FOLLOWLOCATION curl_easy_setopt option. (David Carlier)
+ . Added curl_multi_get_handles(). (timwolla)
+ . Added curl_share_init_persistent(). (enorris)
+ . Added CURLINFO_USED_PROXY, CURLINFO_HTTPAUTH_USED, and CURLINFO_PROXYAUTH_USED
+ support to curl_getinfo. (Ayesh Karunaratne)
+ . Add support for CURLINFO_CONN_ID in curl_getinfo() (thecaliskan)
+ . Add support for CURLINFO_QUEUE_TIME_T in curl_getinfo() (thecaliskan)
+ . Add support for CURLOPT_SSL_SIGNATURE_ALGORITHMS. (Ayesh Karunaratne)
+ . The curl_close() function has been deprecated. (DanielEScherzer)
+ . The curl_share_close() function has been deprecated. (DanielEScherzer)
+ . Fix cloning of CURLOPT_POSTFIELDS when using the clone operator instead
+ of the curl_copy_handle() function to clone a CurlHandle. (timwolla)
+
+- Date:
+ . Fix undefined behaviour problems regarding integer overflow in extreme edge
+ cases. (nielsdos, cmb, ilutov)
+ . The DATE_RFC7231 and DateTimeInterface::RFC7231 constants have been
+ deprecated. (jorgsowa)
+ . Fixed date_sunrise() and date_sunset() with partial-hour UTC offset.
+ (ilutov)
+ . Fixed GH-17159: "P" format for ::createFromFormat swallows string literals.
+ (nielsdos)
+ . The __wakeup() magic method of DateTimeInterface, DateTime,
+ DateTimeImmutable, DateTimeZone, DateInterval, and DatePeriod has been
+ deprecated in favour of the __unserialize() magic method. (Girgias)
+
+- DOM:
+ . Added Dom\Element::$outerHTML. (nielsdos)
+ . Added Dom\Element::insertAdjacentHTML(). (nielsdos)
+ . Added $children property to ParentNode implementations. (nielsdos)
+ . Make cloning DOM node lists, maps, and collections fail. (nielsdos)
+ . Added Dom\Element::getElementsByClassName(). (nielsdos)
+ . Fixed bug GH-18877 (\Dom\HTMLDocument querySelectorAll selecting only the
+ first when using ~ and :has). (nielsdos, lexborisov)
+ . Fix getNamedItemNS() incorrect namespace check. (nielsdos)
+
+- Enchant:
+ . Added enchant_dict_remove_from_session(). (nielsdos)
+ . Added enchant_dict_remove(). (nielsdos)
+ . Fix missing empty string checks. (nielsdos)
+
+- EXIF:
+ . Add OffsetTime* Exif tags. (acc987)
+ . Added support to retrieve Exif from HEIF file. (Benstone Zhang)
+ . Fix OSS-Fuzz #442954659 (zero-size box in HEIF file causes infinite loop).
+ (nielsdos)
+ . Fix OSS-Fuzz #442954659 (Crash in exif_scan_HEIF_header). (nielsdos)
+ . Various hardening fixes to HEIF parsing. (nielsdos)
+
+
+- FileInfo:
+ . The finfo_close() function has been deprecated. (timwolla)
+ . The $context parameter of the finfo_buffer() function has been deprecated
+ as it is ignored. (Girgias)
+ . Upgrade to file 5.46. (nielsdos)
+ . Change return type of finfo_close() to true. (timwolla)
+
+- Filter:
+ . Added support for configuring the URI parser for FILTER_VALIDATE_URL
+ as described in https://wiki.php.net/rfc/url_parsing_api#plugability.
+ (kocsismate)
+ . Fixed bug GH-16993 (filter_var_array with FILTER_VALIDATE_INT|FILTER_NULL_ON_FAILURE
+ should emit warning for invalid filter usage). (alexandre-daubois)
+ . Added FILTER_THROW_ON_FAILURE flag. (DanielEScherzer)
+
+- FPM:
+ . Fixed bug GH-19817 (Decode SCRIPT_FILENAME issue in php 8.5).
+ (Jakub Zelenka)
+ . Fixed bug GH-19989 (PHP 8.5 FPM access log lines also go to STDERR).
+ (Jakub Zelenka)
+ . Fixed GH-17645 (FPM with httpd ProxyPass does not decode script path).
+ (Jakub Zelenka)
+ . Make FPM access log limit configurable using log_limit. (Jakub Zelenka)
+ . Fixed failed debug assertion when php_admin_value setting fails. (ilutov)
+ . Fixed GH-8157 (post_max_size evaluates .user.ini too late in php-fpm).
+ (Jakub Zelenka)
+
+- GD:
+ . Fixed bug #68629 (Transparent artifacts when using imagerotate). (pierre,
+ cmb)
+ . Fixed bug #64823 (ZTS GD fails to find system TrueType font). (cmb)
+ . Fix incorrect comparison with result of php_stream_can_cast(). (Girgias)
+ . The imagedestroy() function has been deprecated. (DanielEScherzer)
+
+- Iconv:
+ . Extends the ICONV_CONST preprocessor for illumos/solaris. (jMichaelA)
+
+- Intl:
+ . Bumped ICU requirement to ICU >= 57.1. (cmb)
+ . IntlDateFormatter::setTimeZone()/datefmt_set_timezone() throws an exception
+ with uninitialised classes or clone failure. (David Carlier)
+ . Added DECIMAL_COMPACT_SHORT/DECIMAL_COMPACT_LONG for NumberFormatter class.
+ (BogdanUngureanu)
+ . Added Locale::isRightToLeft to check if a locale is written right to left.
+ (David Carlier)
+ . Added null bytes presence in locale inputs for Locale class. (David Carlier)
+ . Added grapheme_levenshtein() function. (Yuya Hamada)
+ . Added Locale::addLikelySubtags/Locale::minimizeSubtags to handle
+ adding/removing likely subtags to a locale. (David Carlier)
+ . Added IntlListFormatter class to format a list of items with a locale,
+ operands types and units. (BogdanUngureanu)
+ . Added grapheme_strpos(), grapheme_stripos(), grapheme_strrpos(),
+ grapheme_strripos(), grapheme_substr(), grapheme_strstr(), grapheme_stristr() and
+ grapheme_levenshtein() functions add $locale parameter (Yuya Hamada).
+ . Fixed bug GH-11952 (Fix locale strings canonicalization for IntlDateFormatter
+ and NumberFormatter). (alexandre-daubois)
+ . Fixed bug GH-18566 ([intl] Weird numeric sort in Collator). (nielsdos)
+ . Fix return value on failure for resourcebundle count handler. (Girgias)
+ . Fixed bug GH-19307 (PGO builds of shared ext-intl are broken). (cmb)
+ . Intl's internal error mechanism has been modernized so that it
+ indicates more accurately which call site caused what error.
+ Moreover, some ext/date exceptions have been wrapped inside a
+ IntlException now. (Girgias)
+ . The intl.error_level INI setting has been deprecated. (Girgias)
+
+- LDAP:
+ . Allow ldap_get_option to retrieve global option by allowing NULL for
+ connection instance ($ldap). (Remi)
+
+- MBstring:
+ . Updated Unicode data tables to Unicode 17.0. (Yuya Hamada)
+
+- MySQLi:
+ . Fixed bugs GH-17900 and GH-8084 (calling mysqli::__construct twice).
+ (nielsdos)
+ . The mysqli_execute() alias function has been deprecated. (timwolla)
+
+- MySQLnd:
+ . Added mysqlnd.collect_memory_statistics to ini quick reference.
+ (hauk92)
+
+- ODBC:
+ . Removed driver-specific build flags and support. (Calvin Buckley)
+ . Remove ODBCVER and assume ODBC 3.5. (Calvin Buckley)
+
+- Opcache:
+ . Make OPcache non-optional (Arnaud, timwolla)
+ . Added opcache.file_cache_read_only. (Samuel Melrose)
+ . Updated default value of opcache.jit_hot_loop. (Arnaud)
+ . Log a warning when opcache lock file permissions could not be changed.
+ (Taavi Eomäe)
+ . Fixed bug GH-20012 (heap buffer overflow in jit). (Arnaud)
+ . Partially fixed bug GH-17733 (Avoid calling wrong function when reusing file
+ caches across differing environments). (ilutov)
+ . Disallow changing opcache.memory_consumption when SHM is already set up.
+ (timwolla)
+ . Fixed bug GH-15074 (Compiling opcache statically into ZTS PHP fails).
+ (Arnaud)
+ . Fixed bug GH-17422 (OPcache bypasses the user-defined error handler for
+ deprecations). (Arnaud, timwolla)
+ . Fixed bug GH-19301 (opcache build failure). (Remi)
+ . Fixed bug GH-20081 (access to uninitialized vars in preload_load()).
+ (Arnaud)
+ . Fixed bug GH-20121 (JIT broken in ZTS builds on MacOS 15).
+ (Arnaud, Shivam Mathur)
+ . Fixed bug GH-19875 (JIT 1205 segfault on large file compiled in subprocess).
+ (Arnaud)
+ . Fixed segfault in function JIT due to NAN to bool warning. (Girgias)
+ . Fixed bug GH-19984 (Double-free of EG(errors)/persistent_script->warnings on
+ persist of already persisted file). (ilutov, Arnaud)
+ . Fixed bug GH-19889 (race condition in zend_runtime_jit(),
+ zend_jit_hot_func()). (Arnaud)
+ . Fixed bug GH-19669 (assertion failure in zend_jit_trace_type_to_info_ex).
+ (Arnaud)
+ . Fixed bug GH-19831 (function JIT may not deref property value). (Arnaud)
+ . Fixed bug GH-19486 (Incorrect opline after deoptimization). (Arnaud)
+ . Fixed bug GH-19601 (Wrong JIT stack setup on aarch64/clang). (Arnaud)
+ . Fixed bug GH-19388 (Broken opcache.huge_code_pages). (Arnaud)
+ . Fixed bug GH-19657 (Build fails on non-glibc/musl/freebsd/macos/win
+ platforms). (Arnaud)
+ . Fixed ZTS OPcache build on Cygwin. (cmb)
+ . Fixed bug GH-19493 (JIT variable not stored before YIELD). (Arnaud)
+
+- OpenSSL:
+ . Added openssl.libctx INI that allows to select the OpenSSL library context
+ type and convert various parts of the extension to use the custom libctx.
+ (Jakub Zelenka)
+ . Add $digest_algo parameter to openssl_public_encrypt() and
+ openssl_private_decrypt() functions. (Jakub Zelenka)
+ . Implement #81724 (openssl_cms_encrypt only allows specific ciphers).
+ (Jakub Zelenka)
+ . Implement #80495 (Enable to set padding in openssl_(sign|verify).
+ (Jakub Zelenka)
+ . Implement #47728 (openssl_pkcs7_sign ignores new openssl flags).
+ (Jakub Zelenka)
+ . Fixed bug GH-19994 (openssl_get_cipher_methods inconsistent with fetching).
+ (Jakub Zelenka)
+ . Fixed build when --with-openssl-legacy-provider set. (Jakub Zelenka)
+ . Fixed bug GH-19369 (8.5 | Regression in openssl_sign() - support for alias
+ algorithms appears to be broken). (Jakub Zelenka)
+ . The $key_length parameter for openssl_pkey_derive() has been deprecated.
+ (Girgias)
+
+- Output:
+ . Fixed calculation of aligned buffer size. (cmb)
+
+- PCNTL:
+ . Extend pcntl_waitid with rusage parameter. (vrza)
+
+- PCRE:
+ . Remove PCRE2_EXTRA_ALLOW_LOOKAROUND_BSK from pcre compile options.
+ (mvorisek)
+
+- PDO:
+ . Fixed bug GH-20095 (Incorrect class name in deprecation message for PDO
+ mixins). (timwolla)
+ . Driver specific methods and constants in the PDO class
+ are now deprecated. (Arnaud)
+ . The "uri:" DSN scheme has been deprecated due to security concerns with
+ DSNs coming from remote URIs. (timwolla)
+
+- PDO_ODBC:
+ . Fetch larger block sizes and better handle SQL_NO_TOTAL when calling
+ SQLGetData. (Calvin Buckley, Saki Takamachi)
+
+- PDO_PGSQL:
+ . Added Iterable support for PDO::pgsqlCopyFromArray. (KentarouTakeda)
+ . Implement GH-15387 Pdo\Pgsql::setAttribute(PDO::ATTR_PREFETCH, 0) or
+ Pdo\Pgsql::prepare(…, [ PDO::ATTR_PREFETCH => 0 ]) make fetch() lazy
+ instead of storing the whole result set in memory (Guillaume Outters)
+
+- PDO_SQLITE:
+ . Add PDO\Sqlite::ATTR_TRANSACTION_MODE connection attribute.
+ (Samuel Štancl)
+ . Implement GH-17321: Add setAuthorizer to Pdo\Sqlite. (nielsdos)
+ . PDO::sqliteCreateCollation now throws a TypeError if the callback
+ has a wrong return type. (David Carlier)
+ . Added Pdo_Sqlite::ATTR_BUSY_STATEMENT constant to check
+ if a statement is currently executing. (David Carlier)
+ . Added Pdo_Sqlite::ATTR_EXPLAIN_STATEMENT constant to set a statement
+ in either EXPLAIN_MODE_PREPARED, EXPLAIN_MODE_EXPLAIN,
+ EXPLAIN_MODE_EXPLAIN_QUERY_PLAN modes. (David Carlier)
+ . Fix bug GH-13952 (sqlite PDO::quote silently corrupts strings
+ with null bytes) by throwing on null bytes. (divinity76)
+
+- PGSQL:
+ . Added pg_close_stmt to close a prepared statement while allowing
+ its name to be reused. (David Carlier)
+ . Added Iterable support for pgsql_copy_from. (David Carlier)
+ . pg_connect checks if connection_string contains any null byte,
+ pg_close_stmt check if the statement contains any null byte.
+ (David Carlier)
+ . Added pg_service to get the connection current service identifier.
+ (David Carlier)
+ . Fix segfaults when attempting to fetch row into a non-instantiable class
+ name. (Girgias, nielsdos)
+
+- Phar:
+ . Fix potential buffer length truncation due to usage of type int instead
+ of type size_t. (Girgias)
+ . Fixed memory leaks when verifying OpenSSL signature. (Girgias)
+
+- POSIX:
+ . Added POSIX_SC_OPEN_MAX constant to get the number of file descriptors
+ a process can handle. (David Carlier)
+ . posix_ttyname() sets last_error to EBADF on invalid file descriptors,
+ posix_isatty() raises E_WARNING on invalid file descriptors,
+ posix_fpathconf checks invalid file descriptors. (David Carlier)
+ . posix_kill and posix_setpgid throws a ValueError on invalid process_id.
+ (David Carlier)
+ . posix_setpgid throws a ValueError on invalid process_group_id,
+ posix_setrlimit throws a ValueError on invalid soft_limit and hard_limit
+ arguments. (David Carlier)
+
+- Random:
+ . Moves from /dev/urandom usage to arc4random_buf on Haiku. (David Carlier)
+
+- Reflection:
+ . Added ReflectionConstant::getExtension() and ::getExtensionName().
+ (DanielEScherzer)
+ . Added ReflectionProperty::getMangledName() method. (alexandre-daubois)
+ . ReflectionConstant is no longer final. (sasezaki)
+ . The setAccessible() methods of various Reflection objects have been
+ deprecated, as those no longer have an effect. (timwolla)
+ . ReflectionClass::getConstant() for constants that do not exist has been
+ deprecated. (DanielEScherzer)
+ . ReflectionProperty::getDefaultValue() for properties without default values
+ has been deprecated. (DanielEScherzer)
+ . Fixed bug GH-12856 (ReflectionClass::getStaticPropertyValue() returns UNDEF
+ zval for uninitialized typed properties). (nielsdos)
+ . Fixed bug GH-15766 (ReflectionClass::__toString() should have better output
+ for enums). (DanielEScherzer)
+ . Fix GH-19691 (getModifierNames() not reporting asymmetric visibility).
+ (DanielEScherzer)
+ . Fixed bug GH-17927 (Reflection: have some indication of property hooks in
+ `_property_string()`). (DanielEScherzer)
+ . Fixed bug GH-19187 (ReflectionNamedType::getName() prints nullable type when
+ retrieved from ReflectionProperty::getSettableType()). (ilutov)
+ . Fixed bug GH-20217 (ReflectionClass::isIterable() incorrectly returns true
+ for classes with property hooks). (alexandre-daubois)
+
+- SAPI:
+ . Fixed bug GH-18582 and #81451: http_response_code() does not override the
+ status code generated by header(). (ilutov, Jakub Zelenka)
+
+- Session:
+ . session_start() throws a ValueError on option argument if not a hashmap
+ or a TypeError if read_and_close value is not compatible with int.
+ (David Carlier)
+ . Added support for partitioned cookies. (nielsdos)
+ . Fix RC violation of session SID constant deprecation attribute. (ilutov)
+ . Fixed GH-19197: build broken with ZEND_STRL usage with memcpy
+ when implemented as macro. (David Carlier)
+
+- SimpleXML:
+ . Fixed bug GH-12231 (SimpleXML xpath should warn when returning other return
+ types than node lists). (nielsdos)
+
+- SNMP:
+ . snmpget, snmpset, snmp_get2, snmp_set2, snmp_get3, snmp_set3 and
+ SNMP::__construct() throw an exception on invalid hostname, community
+ timeout and retries arguments. (David Carlier)
+
+- SOAP:
+ . Added support for configuring the URI parser for SoapClient::__doRequest()
+ as described in https://wiki.php.net/rfc/url_parsing_api#plugability.
+ (kocsismate)
+ . Implement request #55503 (Extend __getTypes to support enumerations).
+ (nielsdos, datibbaw)
+ . Implement request #61105 (Support Soap 1.2 SoapFault Reason Text lang
+ attribute). (nielsdos)
+ . Fixed bug #49169 (SoapServer calls wrong function, although "SOAP action"
+ header is correct). (nielsdos)
+ . Fix namespace handling of WSDL and XML schema in SOAP,
+ fixing at least GH-16320 and bug #68576. (nielsdos)
+ . Fixed bug #70951 (Segmentation fault on invalid WSDL cache). (nielsdos)
+ . Fixed bug GH-19773 (SIGSEGV due to uninitialized soap_globals->lang_en).
+ (nielsdos, KaseyJenkins)
+ . Fixed bug GH-19226 (Segfault when spawning new thread in soap extension).
+ (Florian Engelhardt)
+
+- Sockets:
+ . Added IPPROTO_ICMP/IPPROTO_ICMPV6 to create raw socket for ICMP usage.
+ (David Carlier)
+ . Added TCP_FUNCTION_BLK to change the TCP stack algorithm on FreeBSD.
+ (David Carlier)
+ . Added IP_BINDANY for a socket to bind to any address. (David Carlier)
+ . Added SO_BUSY_POOL to reduce packets poll latency. (David Carlier)
+ . Added UDP_SEGMENT support to optimise multiple large datagrams over UDP
+ if the kernel and hardware supports it. (David Carlier)
+ . Added SHUT_RD, SHUT_WR and SHUT_RDWR constants for socket_shutdown().
+ (David Carlier)
+ . Added TCP_FUNCTION_ALIAS, TCP_REUSPORT_LB_NUMA, TCP_REUSPORT_LB_NUMA_NODOM,
+ TCP_REUSPORT_LB_CURDOM, TCP_BBR_ALGORITHM constants.
+ . socket_set_option() catches possible overflow with SO_RCVTIMEO/SO_SNDTIMEO
+ with timeout setting on windows. (David Carlier)
+ . socket_create_listen() throws an exception on invalid port value.
+ (David Carlier)
+ . socket_bind() throws an exception on invalid port value.
+ (David Carlier)
+ . socket_sendto() throws an exception on invalid port value.
+ (David Carlier)
+ . socket_addrinfo_lookup throws an exception on invalid hints value types.
+ (David Carlier)
+ . socket_addrinfo_lookup throws an exception if any of the hints value
+ overflows. (David Carlier)
+ . socket_addrinfo_lookup throws an exception if one or more hints entries
+ has an index as numeric. (David Carlier)
+ . socket_set_option with the options MCAST_LEAVE_GROUP/MCAST_LEAVE_SOURCE_GROUP
+ will throw an exception if its value is not a valid array/object.
+ (David Carlier)
+ . socket_getsockname/socket_create/socket_bind handled AF_PACKET family socket.
+ (David Carlier)
+ . socket_set_option for multicast context throws a ValueError
+ when the socket family is not of AF_INET/AF_INET6 family. (David Carlier)
+
+- Sodium:
+ . Fix overall theoretical overflows on zend_string buffer allocations.
+ (David Carlier/nielsdos)
+
+- SPL:
+ . Fixed bug GH-20101 (SplHeap/SplPriorityQueue serialization
+ exposes INDIRECTs). (nielsdos)
+ . Improve __unserialize() hardening for SplHeap/SplPriorityQueue. (nielsdos)
+ . Deprecate ArrayObject and ArrayIterator with objects. (Girgias)
+ . Unregistering all autoloaders by passing the spl_autoload_call() function
+ as a callback argument to spl_autoload_unregister() has been deprecated.
+ Instead if this is needed, one should iterate over the return value of
+ spl_autoload_functions() and call spl_autoload_unregister() on each
+ value. (Girgias)
+ . The SplObjectStorage::contains(), SplObjectStorage::attach(), and
+ SplObjectStorage::detach() methods have been deprecated in favour of
+ SplObjectStorage::offsetExists(), SplObjectStorage::offsetSet(), and
+ SplObjectStorage::offsetUnset() respectively. (Girgias)
+
+- Sqlite:
+ . Added Sqlite3Stmt::busy to check if a statement is still being executed.
+ (David Carlier)
+ . Added Sqlite3Stmt::explain to produce an explain query plan from
+ the statement. (David Carlier)
+ . Added Sqlite3Result::fetchAll to return all results at once from a query.
+ (David Carlier)
+
+- Standard:
+ . Add HEIF/HEIC support to getimagesize. (Benstone Zhang)
+ . Added support for partitioned cookies. (nielsdos)
+ . Implement #71517 (Implement SVG support for getimagesize() and friends).
+ (nielsdos)
+ . Implement GH-19188: Add support for new INI mail.cr_lf_mode.
+ (alexandre-daubois)
+ . Optimized PHP html_entity_decode function. (Artem Ukrainskiy)
+ . Minor optimization to array_chunk(). (nielsdos)
+ . Optimized pack(). (nielsdos, divinity76)
+ . Fixed crypt() tests on musl when using --with-external-libcrypt
+ (Michael Orlitzky).
+ . Fixed bug GH-18062 (is_callable(func(...), callable_name: $name) for first
+ class callables returns wrong name). (timwolla)
+ . Added array_first() and array_last(). (nielsdos)
+ . Fixed bug GH-18823 (setlocale's 2nd and 3rd argument ignores strict_types).
+ (nielsdos)
+ . Fixed exit code handling of sendmail cmd and added warnings.
+ (Jesse Hathaway)
+ . Fixed bug GH-18897 (printf: empty precision is interpreted as precision 6,
+ not as precision 0). (nielsdos)
+ . Fixed bug GH-20257 (mail() heap overflow with an empty message in lf mode).
+ (David Carlier)
+ . Fixed bug GH-20201 (AVIF images misdetected as HEIF after introducing HEIF
+ support in getimagesize()). (nielsdos)
+ . Fixed bug GH-19926 (reset internal pointer earlier while splicing array
+ while COW violation flag is still set). (alexandre-daubois)
+ . Fixed bug GH-19801 (leaks in var_dump() and debug_zval_dump()).
+ (alexandre-daubois)
+ . Fixed GH-14402 (SplPriorityQueue, SplMinHeap, and SplMaxHeap lost their
+ data on serialize()). (alexandre-daubois)
+ . Fixed GH-19610 (Deprecation warnings in functions taking as argument).
+ (Girgias)
+ . Fixed bug GH-19577 (Avoid integer overflow when using a small offset
+ and PHP_INT_MAX with LimitIterator). (alexandre-daubois)
+ . Fixed bug GH-19153 (#[\Attribute] validation should error on
+ trait/interface/enum/abstract class). (DanielEScherzer)
+ . Fixed bug GH-19070 (setlocale($type, NULL) should not be deprecated).
+ (nielsdos)
+ . Fixed bug GH-16649 (UAF during array_splice). (alexandre-daubois)
+ . Passing strings which are not one byte long to ord() is now deprecated.
+ (Girgias)
+ . Passing integers outside the interval [0, 255] to chr() is now deprecated.
+ (Girgias)
+ . The socket_set_timeout() alias function has been deprecated. (timwolla)
+ . Passing null to readdir(), rewinddir(), and closedir() to use the last
+ opened directory has been deprecated. (Girgias)
+
+- Streams:
+ . Fixed bug GH-16889 (stream_select() timeout useless for pipes on Windows).
+ (cmb)
+ . Fixed bug GH-19798: XP_SOCKET XP_SSL (Socket stream modules): Incorrect
+ condition for Win32/Win64. (Jakub Zelenka)
+ . Fixed bug GH-14506 (Closing a userspace stream inside a userspace handler
+ causes heap corruption). (nielsdos)
+ . Avoid double conversion to string in php_userstreamop_readdir(). (nielsdos)
+
+- Tests:
+ . Allow to shuffle tests even in non-parallel mode. (dhuang00)
+
+- Tidy:
+ . tidy::__construct/parseFile/parseString methods throw an exception if
+ the configuration argument is invalid. (David Carlier)
+ . Fixed GH-19021 (improved tidyOptGetCategory detection).
+ (arjendekorte, David Carlier, Peter Kokot)
+
+- Tokenizer:
+ . Fixed bug GH-19507 (Corrupted result after recursive tokenization during
+ token_get_all()). (kubawerlos, nielsdos, Arnaud)
+
+- Windows:
+ . Fixed bug GH-10992 (Improper long path support for relative paths). (cmb,
+ nielsdos)
+ . Fixed bug GH-16843 (Windows phpize builds ignore source subfolders). (cmb)
+ . Fix GH-19722 (_get_osfhandle asserts in debug mode when given a socket).
+ (dktapps)
+
+- XML:
+ . The xml_parser_free() function has been deprecated. (DanielEScherzer)
+
+- XMLWriter:
+ . Improved performance and reduce memory consumption. (nielsdos)
+
+- XSL:
+ . Implement request #30622 (make $namespace parameter functional). (nielsdos)
+
+- Zlib:
+ . gzfile, gzopen and readgzfile, their "use_include_path" argument
+ is now a boolean. (David Carlier)
+ . Fixed bug GH-16883 (gzopen() does not use the default stream context when
+ opening HTTP URLs). (nielsdos)
+ . Implemented GH-17668 (zlib streams should support locking). (nielsdos)
+
+- Zip:
+ . Fixed missing zend_release_fcall_info_cache on the following methods
+ ZipArchive::registerProgressCallback() and ZipArchive::registerCancelCallback()
+ on failure. (David Carlier)
diff --git a/ParlzDownloadMAX/PHP/bin/nghttp2.dll b/ParlzDownloadMAX/PHP/bin/nghttp2.dll
new file mode 100644
index 0000000..5bf8857
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/nghttp2.dll differ
diff --git a/ParlzDownloadMAX/PHP/bin/phar.phar.bat b/ParlzDownloadMAX/PHP/bin/phar.phar.bat
new file mode 100644
index 0000000..aac3f76
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/phar.phar.bat
@@ -0,0 +1 @@
+"%~dp0php.exe" "%~dp0pharcommand.phar" %*
diff --git a/ParlzDownloadMAX/PHP/bin/pharcommand.phar b/ParlzDownloadMAX/PHP/bin/pharcommand.phar
new file mode 100644
index 0000000..e729549
Binary files /dev/null and b/ParlzDownloadMAX/PHP/bin/pharcommand.phar differ
diff --git a/ParlzDownloadMAX/PHP/bin/php.ini-development b/ParlzDownloadMAX/PHP/bin/php.ini-development
new file mode 100644
index 0000000..6f93f44
--- /dev/null
+++ b/ParlzDownloadMAX/PHP/bin/php.ini-development
@@ -0,0 +1,1878 @@
+[PHP]
+
+;;;;;;;;;;;;;;;;;;;
+; About php.ini ;
+;;;;;;;;;;;;;;;;;;;
+; PHP's initialization file, generally called php.ini, is responsible for
+; configuring many of the aspects of PHP's behavior.
+
+; PHP attempts to find and load this configuration from a number of locations.
+; The following is a summary of its search order:
+; 1. SAPI module specific location.
+; 2. The PHPRC environment variable.
+; 3. A number of predefined registry keys on Windows
+; 4. Current working directory (except CLI)
+; 5. The web server's directory (for SAPI modules), or directory of PHP
+; (otherwise in Windows)
+; 6. The directory from the --with-config-file-path compile time option, or the
+; Windows directory (usually C:\windows)
+; See the PHP docs for more specific information.
+; https://php.net/configuration.file
+
+; The syntax of the file is extremely simple. Whitespace and lines
+; beginning with a semicolon are silently ignored (as you probably guessed).
+; Section headers (e.g. [Foo]) are also silently ignored, even though
+; they might mean something in the future.
+
+; Directives following the section heading [PATH=/www/mysite] only
+; apply to PHP files in the /www/mysite directory. Directives
+; following the section heading [HOST=www.example.com] only apply to
+; PHP files served from www.example.com. Directives set in these
+; special sections cannot be overridden by user-defined INI files or
+; at runtime. Currently, [PATH=] and [HOST=] sections only work under
+; CGI/FastCGI.
+; https://php.net/ini.sections
+
+; Directives are specified using the following syntax:
+; directive = value
+; Directive names are *case sensitive* - foo=bar is different from FOO=bar.
+; Directives are variables used to configure PHP or PHP extensions.
+; There is no name validation. If PHP can't find an expected
+; directive because it is not set or is mistyped, a default value will be used.
+
+; The value can be a string, a number, a PHP constant (e.g. E_ALL or M_PI), one
+; of the INI constants (On, Off, True, False, Yes, No and None) or an expression
+; (e.g. E_ALL & ~E_NOTICE), a quoted string ("bar"), or a reference to a
+; previously set variable or directive (e.g. ${foo})
+
+; Expressions in the INI file are limited to bitwise operators and parentheses:
+; | bitwise OR
+; ^ bitwise XOR
+; & bitwise AND
+; ~ bitwise NOT
+; ! boolean NOT
+
+; Boolean flags can be turned on using the values 1, On, True or Yes.
+; They can be turned off using the values 0, Off, False or No.
+
+; An empty string can be denoted by simply not writing anything after the equal
+; sign, or by using the None keyword:
+
+; foo = ; sets foo to an empty string
+; foo = None ; sets foo to an empty string
+; foo = "None" ; sets foo to the string 'None'
+
+; If you use constants in your value, and these constants belong to a
+; dynamically loaded extension (either a PHP extension or a Zend extension),
+; you may only use these constants *after* the line that loads the extension.
+
+;;;;;;;;;;;;;;;;;;;
+; About this file ;
+;;;;;;;;;;;;;;;;;;;
+; PHP comes packaged with two INI files. One that is recommended to be used
+; in production environments and one that is recommended to be used in
+; development environments.
+
+; php.ini-production contains settings which hold security, performance and
+; best practices at its core. But please be aware, these settings may break
+; compatibility with older or less security-conscious applications. We
+; recommending using the production ini in production and testing environments.
+
+; php.ini-development is very similar to its production variant, except it is
+; much more verbose when it comes to errors. We recommend using the
+; development version only in development environments, as errors shown to
+; application users can inadvertently leak otherwise secure information.
+
+; This is the php.ini-development INI file.
+
+;;;;;;;;;;;;;;;;;;;
+; Quick Reference ;
+;;;;;;;;;;;;;;;;;;;
+
+; The following are all the settings which are different in either the production
+; or development versions of the INIs with respect to PHP's default behavior.
+; Please see the actual settings later in the document for more details as to why
+; we recommend these changes in PHP's behavior.
+
+; display_errors
+; Default Value: On
+; Development Value: On
+; Production Value: Off
+
+; display_startup_errors
+; Default Value: On
+; Development Value: On
+; Production Value: Off
+
+; error_reporting
+; Default Value: E_ALL
+; Development Value: E_ALL
+; Production Value: E_ALL & ~E_DEPRECATED
+
+; log_errors
+; Default Value: Off
+; Development Value: On
+; Production Value: On
+
+; max_input_time
+; Default Value: -1 (Unlimited)
+; Development Value: 60 (60 seconds)
+; Production Value: 60 (60 seconds)
+
+; mysqlnd.collect_memory_statistics
+; Default Value: Off
+; Development Value: On
+; Production Value: Off
+
+; output_buffering
+; Default Value: Off
+; Development Value: 4096
+; Production Value: 4096
+
+; request_order
+; Default Value: None
+; Development Value: "GP"
+; Production Value: "GP"
+
+; session.gc_divisor
+; Default Value: 100
+; Development Value: 1000
+; Production Value: 1000
+
+; short_open_tag
+; Default Value: On
+; Development Value: Off
+; Production Value: Off
+
+; variables_order
+; Default Value: "EGPCS"
+; Development Value: "GPCS"
+; Production Value: "GPCS"
+
+; zend.assertions
+; Default Value: 1
+; Development Value: 1
+; Production Value: -1
+
+; zend.exception_ignore_args
+; Default Value: Off
+; Development Value: Off
+; Production Value: On
+
+; zend.exception_string_param_max_len
+; Default Value: 15
+; Development Value: 15
+; Production Value: 0
+
+;;;;;;;;;;;;;;;;;;;;
+; php.ini Options ;
+;;;;;;;;;;;;;;;;;;;;
+; Name for user-defined php.ini (.htaccess) files. Default is ".user.ini"
+;user_ini.filename = ".user.ini"
+
+; To disable this feature set this option to an empty value
+;user_ini.filename =
+
+; TTL for user-defined php.ini files (time-to-live) in seconds. Default is 300 seconds (5 minutes)
+;user_ini.cache_ttl = 300
+
+;;;;;;;;;;;;;;;;;;;;
+; Language Options ;
+;;;;;;;;;;;;;;;;;;;;
+
+; Enable the PHP scripting language engine under Apache.
+; https://php.net/engine
+engine = On
+
+; This directive determines whether or not PHP will recognize code between
+; and ?> tags as PHP source which should be processed as such. It is
+; generally recommended that should be used and that this feature
+; should be disabled, as enabling it may result in issues when generating XML
+; documents, however this remains supported for backward compatibility reasons.
+; Note that this directive does not control the = shorthand tag, which can be
+; used regardless of this directive.
+; Default Value: On
+; Development Value: Off
+; Production Value: Off
+; https://php.net/short-open-tag
+short_open_tag = Off
+
+; The number of significant digits displayed in floating point numbers.
+; https://php.net/precision
+precision = 14
+
+; Output buffering is a mechanism for controlling how much output data
+; (excluding headers and cookies) PHP should keep internally before pushing that
+; data to the client. If your application's output exceeds this setting, PHP
+; will send that data in chunks of roughly the size you specify.
+; Turning on this setting and managing its maximum buffer size can yield some
+; interesting side-effects depending on your application and web server.
+; You may be able to send headers and cookies after you've already sent output
+; through print or echo. You also may see performance benefits if your server is
+; emitting less packets due to buffered output versus PHP streaming the output
+; as it gets it. On production servers, 4096 bytes is a good setting for performance
+; reasons.
+; Note: Output buffering can also be controlled via Output Buffering Control
+; functions.
+; Possible Values:
+; On = Enabled and buffer is unlimited. (Use with caution)
+; Off = Disabled
+; Integer = Enables the buffer and sets its maximum size in bytes.
+; Note: This directive is hardcoded to Off for the CLI SAPI
+; Default Value: Off
+; Development Value: 4096
+; Production Value: 4096
+; https://php.net/output-buffering
+output_buffering = 4096
+
+; You can redirect all of the output of your scripts to a function. For
+; example, if you set output_handler to "mb_output_handler", character
+; encoding will be transparently converted to the specified encoding.
+; Setting any output handler automatically turns on output buffering.
+; Note: People who wrote portable scripts should not depend on this ini
+; directive. Instead, explicitly set the output handler using ob_start().
+; Using this ini directive may cause problems unless you know what script
+; is doing.
+; Note: You cannot use both "mb_output_handler" with "ob_iconv_handler"
+; and you cannot use both "ob_gzhandler" and "zlib.output_compression".
+; Note: output_handler must be empty if this is set 'On' !!!!
+; Instead you must use zlib.output_handler.
+; https://php.net/output-handler
+;output_handler =
+
+; URL rewriter function rewrites URL on the fly by using
+; output buffer. You can set target tags by this configuration.
+; "form" tag is special tag. It will add hidden input tag to pass values.
+; Refer to session.trans_sid_tags for usage.
+; Default Value: "form="
+; Development Value: "form="
+; Production Value: "form="
+;url_rewriter.tags
+
+; URL rewriter will not rewrite absolute URL nor form by default. To enable
+; absolute URL rewrite, allowed hosts must be defined at RUNTIME.
+; Refer to session.trans_sid_hosts for more details.
+; Default Value: ""
+; Development Value: ""
+; Production Value: ""
+;url_rewriter.hosts
+
+; Transparent output compression using the zlib library
+; Valid values for this option are 'off', 'on', or a specific buffer size
+; to be used for compression (default is 4KB)
+; Note: Resulting chunk size may vary due to nature of compression. PHP
+; outputs chunks that are few hundreds bytes each as a result of
+; compression. If you prefer a larger chunk size for better
+; performance, enable output_buffering in addition.
+; Note: You need to use zlib.output_handler instead of the standard
+; output_handler, or otherwise the output will be corrupted.
+; https://php.net/zlib.output-compression
+zlib.output_compression = Off
+
+; https://php.net/zlib.output-compression-level
+;zlib.output_compression_level = -1
+
+; You cannot specify additional output handlers if zlib.output_compression
+; is activated here. This setting does the same as output_handler but in
+; a different order.
+; https://php.net/zlib.output-handler
+;zlib.output_handler =
+
+; Implicit flush tells PHP to tell the output layer to flush itself
+; automatically after every output block. This is equivalent to calling the
+; PHP function flush() after each and every call to print() or echo() and each
+; and every HTML block. Turning this option on has serious performance
+; implications and is generally recommended for debugging purposes only.
+; https://php.net/implicit-flush
+; Note: This directive is hardcoded to On for the CLI SAPI
+implicit_flush = Off
+
+; The unserialize callback function will be called (with the undefined class'
+; name as parameter), if the unserializer finds an undefined class
+; which should be instantiated. A warning appears if the specified function is
+; not defined, or if the function doesn't include/implement the missing class.
+; So only set this entry, if you really want to implement such a
+; callback-function.
+unserialize_callback_func =
+
+; The unserialize_max_depth specifies the default depth limit for unserialized
+; structures. Setting the depth limit too high may result in stack overflows
+; during unserialization. The unserialize_max_depth ini setting can be
+; overridden by the max_depth option on individual unserialize() calls.
+; A value of 0 disables the depth limit.
+;unserialize_max_depth = 4096
+
+; When floats & doubles are serialized, store serialize_precision significant
+; digits after the floating point. The default value ensures that when floats
+; are decoded with unserialize, the data will remain the same.
+; The value is also used for json_encode when encoding double values.
+; If -1 is used, then dtoa mode 0 is used which automatically select the best
+; precision.
+serialize_precision = -1
+
+; open_basedir, if set, limits all file operations to the defined directory
+; and below. This directive makes most sense if used in a per-directory
+; or per-virtualhost web server configuration file.
+; Note: disables the realpath cache
+; https://php.net/open-basedir
+;open_basedir =
+
+; This directive allows you to disable certain functions.
+; It receives a comma-delimited list of function names.
+; https://php.net/disable-functions
+disable_functions =
+
+; Colors for Syntax Highlighting mode. Anything that's acceptable in
+; would work.
+; https://php.net/syntax-highlighting
+;highlight.string = #DD0000
+;highlight.comment = #FF9900
+;highlight.keyword = #007700
+;highlight.default = #0000BB
+;highlight.html = #000000
+
+; If enabled, the request will be allowed to complete even if the user aborts
+; the request. Consider enabling it if executing long requests, which may end up
+; being interrupted by the user or a browser timing out. PHP's default behavior
+; is to disable this feature.
+; https://php.net/ignore-user-abort
+;ignore_user_abort = On
+
+; Determines the size of the realpath cache to be used by PHP. This value should
+; be increased on systems where PHP opens many files to reflect the quantity of
+; the file operations performed.
+; Note: if open_basedir is set, the cache is disabled
+; https://php.net/realpath-cache-size
+;realpath_cache_size = 4096k
+
+; Duration of time, in seconds for which to cache realpath information for a given
+; file or directory. For systems with rarely changing files, consider increasing this
+; value.
+; https://php.net/realpath-cache-ttl
+;realpath_cache_ttl = 120
+
+; Enables or disables the circular reference collector.
+; https://php.net/zend.enable-gc
+zend.enable_gc = On
+
+; If enabled, scripts may be written in encodings that are incompatible with
+; the scanner. CP936, Big5, CP949 and Shift_JIS are the examples of such
+; encodings. To use this feature, mbstring extension must be enabled.
+;zend.multibyte = Off
+
+; Allows to set the default encoding for the scripts. This value will be used
+; unless "declare(encoding=...)" directive appears at the top of the script.
+; Only affects if zend.multibyte is set.
+;zend.script_encoding =
+
+; Allows to include or exclude arguments from stack traces generated for exceptions.
+; In production, it is recommended to turn this setting on to prohibit the output
+; of sensitive information in stack traces
+; Default Value: Off
+; Development Value: Off
+; Production Value: On
+zend.exception_ignore_args = Off
+
+; Allows setting the maximum string length in an argument of a stringified stack trace
+; to a value between 0 and 1000000.
+; This has no effect when zend.exception_ignore_args is enabled.
+; Default Value: 15
+; Development Value: 15
+; Production Value: 0
+zend.exception_string_param_max_len = 15
+
+;;;;;;;;;;;;;;;;;
+; Miscellaneous ;
+;;;;;;;;;;;;;;;;;
+
+; Decides whether PHP may expose the fact that it is installed on the server
+; (e.g. by adding its signature to the Web server header). It is no security
+; threat in any way, but it makes it possible to determine whether you use PHP
+; on your server or not.
+; https://php.net/expose-php
+expose_php = On
+
+;;;;;;;;;;;;;;;;;;;
+; Resource Limits ;
+;;;;;;;;;;;;;;;;;;;
+
+; Maximum execution time of each script, in seconds
+; https://php.net/max-execution-time
+; Note: This directive is hardcoded to 0 for the CLI SAPI
+max_execution_time = 30
+
+; Maximum amount of time each script may spend parsing request data. It's a good
+; idea to limit this time on productions servers in order to eliminate unexpectedly
+; long running scripts.
+; Note: This directive is hardcoded to -1 for the CLI SAPI
+; Default Value: -1 (Unlimited)
+; Development Value: 60 (60 seconds)
+; Production Value: 60 (60 seconds)
+; https://php.net/max-input-time
+max_input_time = 60
+
+; Maximum input variable nesting level
+; https://php.net/max-input-nesting-level
+;max_input_nesting_level = 64
+
+; How many GET/POST/COOKIE input variables may be accepted
+;max_input_vars = 1000
+
+; How many multipart body parts (combined input variable and file uploads) may
+; be accepted.
+; Default Value: -1 (Sum of max_input_vars and max_file_uploads)
+;max_multipart_body_parts = 1500
+
+; Maximum amount of memory a script may consume
+; https://php.net/memory-limit
+memory_limit = 128M
+max_memory_limit = -1
+
+;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;
+; Error handling and logging ;
+;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;
+
+; This directive informs PHP of which errors, warnings and notices you would like
+; it to take action for. The recommended way of setting values for this
+; directive is through the use of the error level constants and bitwise
+; operators. The error level constants are below here for convenience as well as
+; some common settings and their meanings.
+; By default, PHP is set to take action on all errors, notices and warnings EXCEPT
+; those related to E_NOTICE, which together cover best practices and
+; recommended coding standards in PHP. For performance reasons, this is the
+; recommend error reporting setting. Your production server shouldn't be wasting
+; resources complaining about best practices and coding standards. That's what
+; development servers and development settings are for.
+; Note: The php.ini-development file has this setting as E_ALL. This
+; means it pretty much reports everything which is exactly what you want during
+; development and early testing.
+;
+; Error Level Constants:
+; E_ALL - All errors and warnings
+; E_ERROR - fatal run-time errors
+; E_RECOVERABLE_ERROR - almost fatal run-time errors
+; E_WARNING - run-time warnings (non-fatal errors)
+; E_PARSE - compile-time parse errors
+; E_NOTICE - run-time notices (these are warnings which often result
+; from a bug in your code, but it's possible that it was
+; intentional (e.g., using an uninitialized variable and
+; relying on the fact it is automatically initialized to an
+; empty string)
+; E_CORE_ERROR - fatal errors that occur during PHP's initial startup
+; E_CORE_WARNING - warnings (non-fatal errors) that occur during PHP's
+; initial startup
+; E_COMPILE_ERROR - fatal compile-time errors
+; E_COMPILE_WARNING - compile-time warnings (non-fatal errors)
+; E_USER_ERROR - user-generated error message
+; E_USER_WARNING - user-generated warning message
+; E_USER_NOTICE - user-generated notice message
+; E_DEPRECATED - warn about code that will not work in future versions
+; of PHP
+; E_USER_DEPRECATED - user-generated deprecation warnings
+;
+; Common Values:
+; E_ALL (Show all errors, warnings and notices including coding standards.)
+; E_ALL & ~E_NOTICE (Show all errors, except for notices)
+; E_COMPILE_ERROR|E_RECOVERABLE_ERROR|E_ERROR|E_CORE_ERROR (Show only errors)
+; Default Value: E_ALL
+; Development Value: E_ALL
+; Production Value: E_ALL & ~E_DEPRECATED
+; https://php.net/error-reporting
+error_reporting = E_ALL
+
+; This directive controls whether or not and where PHP will output errors,
+; notices and warnings too. Error output is very useful during development, but
+; it could be very dangerous in production environments. Depending on the code
+; which is triggering the error, sensitive information could potentially leak
+; out of your application such as database usernames and passwords or worse.
+; For production environments, we recommend logging errors rather than
+; sending them to STDOUT.
+; Possible Values:
+; Off = Do not display any errors
+; stderr = Display errors to STDERR (affects only CGI/CLI binaries!)
+; On or stdout = Display errors to STDOUT
+; Default Value: On
+; Development Value: On
+; Production Value: Off
+; https://php.net/display-errors
+display_errors = On
+
+; The display of errors which occur during PHP's startup sequence are handled
+; separately from display_errors. We strongly recommend you set this to 'off'
+; for production servers to avoid leaking configuration details.
+; Default Value: On
+; Development Value: On
+; Production Value: Off
+; https://php.net/display-startup-errors
+display_startup_errors = On
+
+; Besides displaying errors, PHP can also log errors to locations such as a
+; server-specific log, STDERR, or a location specified by the error_log
+; directive found below. While errors should not be displayed on productions
+; servers they should still be monitored and logging is a great way to do that.
+; Default Value: Off
+; Development Value: On
+; Production Value: On
+; https://php.net/log-errors
+log_errors = On
+
+; Do not log repeated messages. Repeated errors must occur in same file on same
+; line unless ignore_repeated_source is set true.
+; https://php.net/ignore-repeated-errors
+ignore_repeated_errors = Off
+
+; Ignore source of message when ignoring repeated messages. When this setting
+; is On you will not log errors with repeated messages from different files or
+; source lines.
+; https://php.net/ignore-repeated-source
+ignore_repeated_source = Off
+
+; This setting is off by default.
+;report_zend_debug = 0
+
+; Turn off normal error reporting and emit XML-RPC error XML
+; https://php.net/xmlrpc-errors
+;xmlrpc_errors = 0
+
+; An XML-RPC faultCode
+;xmlrpc_error_number = 0
+
+; When PHP displays or logs an error, it has the capability of formatting the
+; error message as HTML for easier reading. This directive controls whether
+; the error message is formatted as HTML or not.
+; Note: This directive is hardcoded to Off for the CLI SAPI
+; https://php.net/html-errors
+;html_errors = On
+
+; If html_errors is set to On *and* docref_root is not empty, then PHP
+; produces clickable error messages that direct to a page describing the error
+; or function causing the error in detail.
+; You can download a copy of the PHP manual from https://php.net/docs
+; and change docref_root to the base URL of your local copy including the
+; leading '/'. You must also specify the file extension being used including
+; the dot. PHP's default behavior is to leave these settings empty, in which
+; case no links to documentation are generated.
+; Note: Never use this feature for production boxes.
+; https://php.net/docref-root
+; Examples
+;docref_root = "/phpmanual/"
+
+; https://php.net/docref-ext
+;docref_ext = .html
+
+; String to output before an error message. PHP's default behavior is to leave
+; this setting blank.
+; https://php.net/error-prepend-string
+; Example:
+;error_prepend_string = ""
+
+; String to output after an error message. PHP's default behavior is to leave
+; this setting blank.
+; https://php.net/error-append-string
+; Example:
+;error_append_string = ""
+
+; Log errors to specified file. PHP's default behavior is to leave this value
+; empty.
+; https://php.net/error-log
+; Example:
+;error_log = php_errors.log
+; Log errors to syslog (Event Log on Windows).
+;error_log = syslog
+
+; The syslog ident is a string which is prepended to every message logged
+; to syslog. Only used when error_log is set to syslog.
+;syslog.ident = php
+
+; The syslog facility is used to specify what type of program is logging
+; the message. Only used when error_log is set to syslog.
+;syslog.facility = user
+
+; Set this to disable filtering control characters (the default).
+; Some loggers only accept NVT-ASCII, others accept anything that's not
+; control characters. If your logger accepts everything, then no filtering
+; is needed at all.
+; Allowed values are:
+; ascii (all printable ASCII characters and NL)
+; no-ctrl (all characters except control characters)
+; all (all characters)
+; raw (like "all", but messages are not split at newlines)
+; https://php.net/syslog.filter
+;syslog.filter = ascii
+
+;windows.show_crt_warning
+; Default value: 0
+; Development value: 0
+; Production value: 0
+
+; This directive controls whether PHP will output the backtrace of fatal errors.
+; Default Value: On
+; Development Value: On
+; Production Value: On
+;fatal_error_backtraces = On
+
+;;;;;;;;;;;;;;;;;
+; Data Handling ;
+;;;;;;;;;;;;;;;;;
+
+; The separator used in PHP generated URLs to separate arguments.
+; PHP's default setting is "&".
+; https://php.net/arg-separator.output
+; Example:
+;arg_separator.output = "&"
+
+; List of separator(s) used by PHP to parse input URLs into variables.
+; PHP's default setting is "&".
+; NOTE: Every character in this directive is considered as separator!
+; https://php.net/arg-separator.input
+; Example:
+;arg_separator.input = ";&"
+
+; This directive determines which super global arrays are registered when PHP
+; starts up. G,P,C,E & S are abbreviations for the following respective super
+; globals: GET, POST, COOKIE, ENV and SERVER. There is a performance penalty
+; paid for the registration of these arrays and because ENV is not as commonly
+; used as the others, ENV is not recommended on productions servers. You
+; can still get access to the environment variables through getenv() should you
+; need to.
+; Default Value: "EGPCS"
+; Development Value: "GPCS"
+; Production Value: "GPCS";
+; https://php.net/variables-order
+variables_order = "GPCS"
+
+; This directive determines which super global data (G,P & C) should be
+; registered into the super global array REQUEST. If so, it also determines
+; the order in which that data is registered. The values for this directive
+; are specified in the same manner as the variables_order directive,
+; EXCEPT one. Leaving this value empty will cause PHP to use the value set
+; in the variables_order directive. It does not mean it will leave the super
+; globals array REQUEST empty.
+; Default Value: None
+; Development Value: "GP"
+; Production Value: "GP"
+; https://php.net/request-order
+request_order = "GP"
+
+; This directive determines whether PHP registers $argv & $argc each time it
+; runs. $argv contains an array of all the arguments passed to PHP when a script
+; is invoked. $argc contains an integer representing the number of arguments
+; that were passed when the script was invoked. These arrays are extremely
+; useful when running scripts from the command line. When this directive is
+; enabled, registering these variables consumes CPU cycles and memory each time
+; a script is executed. For security reasons, this feature should be disabled
+; for non-CLI SAPIs.
+; Note: This directive is ignored for the CLI SAPI
+; This directive is deprecated.
+; https://php.net/register-argc-argv
+;register_argc_argv = Off
+
+; When enabled, the ENV, REQUEST and SERVER variables are created when they're
+; first used (Just In Time) instead of when the script starts. If these
+; variables are not used within a script, having this directive on will result
+; in a performance gain. The PHP directive register_argc_argv must be disabled
+; for this directive to have any effect.
+; https://php.net/auto-globals-jit
+auto_globals_jit = On
+
+; Whether PHP will read the POST data.
+; This option is enabled by default.
+; Most likely, you won't want to disable this option globally. It causes $_POST
+; and $_FILES to always be empty; the only way you will be able to read the
+; POST data will be through the php://input stream wrapper. This can be useful
+; to proxy requests or to process the POST data in a memory efficient fashion.
+; https://php.net/enable-post-data-reading
+;enable_post_data_reading = Off
+
+; Maximum size of POST data that PHP will accept.
+; Its value may be 0 to disable the limit. It is ignored if POST data reading
+; is disabled through enable_post_data_reading.
+; https://php.net/post-max-size
+post_max_size = 8M
+
+; Automatically add files before PHP document.
+; https://php.net/auto-prepend-file
+auto_prepend_file =
+
+; Automatically add files after PHP document.
+; https://php.net/auto-append-file
+auto_append_file =
+
+; By default, PHP will output a media type using the Content-Type header. To
+; disable this, simply set it to be empty.
+;
+; PHP's built-in default media type is set to text/html.
+; https://php.net/default-mimetype
+default_mimetype = "text/html"
+
+; PHP's default character set is set to UTF-8.
+; https://php.net/default-charset
+default_charset = "UTF-8"
+
+; PHP internal character encoding is set to empty.
+; If empty, default_charset is used.
+; https://php.net/internal-encoding
+;internal_encoding =
+
+; PHP input character encoding is set to empty.
+; If empty, default_charset is used.
+; https://php.net/input-encoding
+;input_encoding =
+
+; PHP output character encoding is set to empty.
+; If empty, default_charset is used.
+; See also output_buffer.
+; https://php.net/output-encoding
+;output_encoding =
+
+;;;;;;;;;;;;;;;;;;;;;;;;;
+; Paths and Directories ;
+;;;;;;;;;;;;;;;;;;;;;;;;;
+
+; UNIX: "/path1:/path2"
+;include_path = ".:/php/includes"
+;
+; Windows: "\path1;\path2"
+;include_path = ".;c:\php\includes"
+;
+; PHP's default setting for include_path is ".;/path/to/php/pear"
+; https://php.net/include-path
+
+; The root of the PHP pages, used only if nonempty.
+; if PHP was not compiled with FORCE_REDIRECT, you SHOULD set doc_root
+; if you are running php as a CGI under any web server (other than IIS)
+; see documentation for security issues. The alternate is to use the
+; cgi.force_redirect configuration below
+; https://php.net/doc-root
+doc_root =
+
+; The directory under which PHP opens the script using /~username used only
+; if nonempty.
+; https://php.net/user-dir
+user_dir =
+
+; Directory in which the loadable extensions (modules) reside.
+; https://php.net/extension-dir
+;extension_dir = "./"
+; On windows:
+;extension_dir = "ext"
+
+; Directory where the temporary files should be placed.
+; Defaults to the system default (see sys_get_temp_dir)
+;sys_temp_dir = "/tmp"
+
+; Whether or not to enable the dl() function. The dl() function does NOT work
+; properly in multithreaded servers, such as IIS or Zeus, and is automatically
+; disabled on them.
+; https://php.net/enable-dl
+enable_dl = Off
+
+; cgi.force_redirect is necessary to provide security running PHP as a CGI under
+; most web servers. Left undefined, PHP turns this on by default. You can
+; turn it off here AT YOUR OWN RISK
+; **You CAN safely turn this off for IIS, in fact, you MUST.**
+; https://php.net/cgi.force-redirect
+;cgi.force_redirect = 1
+
+; if cgi.nph is enabled it will force cgi to always sent Status: 200 with
+; every request. PHP's default behavior is to disable this feature.
+;cgi.nph = 1
+
+; if cgi.force_redirect is turned on, and you are not running under Apache or Netscape
+; (iPlanet) web servers, you MAY need to set an environment variable name that PHP
+; will look for to know it is OK to continue execution. Setting this variable MAY
+; cause security issues, KNOW WHAT YOU ARE DOING FIRST.
+; https://php.net/cgi.redirect-status-env
+;cgi.redirect_status_env =
+
+; cgi.fix_pathinfo provides *real* PATH_INFO/PATH_TRANSLATED support for CGI. PHP's
+; previous behaviour was to set PATH_TRANSLATED to SCRIPT_FILENAME, and to not grok
+; what PATH_INFO is. For more information on PATH_INFO, see the cgi specs. Setting
+; this to 1 will cause PHP CGI to fix its paths to conform to the spec. A setting
+; of zero causes PHP to behave as before. Default is 1. You should fix your scripts
+; to use SCRIPT_FILENAME rather than PATH_TRANSLATED.
+; https://php.net/cgi.fix-pathinfo
+;cgi.fix_pathinfo=1
+
+; if cgi.discard_path is enabled, the PHP CGI binary can safely be placed outside
+; of the web tree and people will not be able to circumvent .htaccess security.
+;cgi.discard_path=1
+
+; FastCGI under IIS supports the ability to impersonate
+; security tokens of the calling client. This allows IIS to define the
+; security context that the request runs under. mod_fastcgi under Apache
+; does not currently support this feature (03/17/2002)
+; Set to 1 if running under IIS. Default is zero.
+; https://php.net/fastcgi.impersonate
+;fastcgi.impersonate = 1
+
+; Prevent decoding of SCRIPT_FILENAME when using Apache ProxyPass or
+; ProxyPassMatch. This should be used if script file paths are not stored
+; in an encoded format on the file system.
+; Default is 1.
+;fastcgi.script_path_encoded = 0
+
+; Disable logging through FastCGI connection. PHP's default behavior is to enable
+; this feature.
+;fastcgi.logging = 0
+
+; cgi.rfc2616_headers configuration option tells PHP what type of headers to
+; use when sending HTTP response code. If set to 0, PHP sends Status: header that
+; is supported by Apache. When this option is set to 1, PHP will send
+; RFC2616 compliant header.
+; Default is zero.
+; https://php.net/cgi.rfc2616-headers
+;cgi.rfc2616_headers = 0
+
+; cgi.check_shebang_line controls whether CGI PHP checks for line starting with #!
+; (shebang) at the top of the running script. This line might be needed if the
+; script support running both as stand-alone script and via PHP CGI<. PHP in CGI
+; mode skips this line and ignores its content if this directive is turned on.
+; https://php.net/cgi.check-shebang-line
+;cgi.check_shebang_line=1
+
+;;;;;;;;;;;;;;;;
+; File Uploads ;
+;;;;;;;;;;;;;;;;
+
+; Whether to allow HTTP file uploads.
+; https://php.net/file-uploads
+file_uploads = On
+
+; Temporary directory for HTTP uploaded files (will use system default if not
+; specified).
+; https://php.net/upload-tmp-dir
+;upload_tmp_dir =
+
+; Maximum allowed size for uploaded files.
+; https://php.net/upload-max-filesize
+upload_max_filesize = 2M
+
+; Maximum number of files that can be uploaded via a single request
+max_file_uploads = 20
+
+;;;;;;;;;;;;;;;;;;
+; Fopen wrappers ;
+;;;;;;;;;;;;;;;;;;
+
+; Whether to allow the treatment of URLs (like http:// or ftp://) as files.
+; https://php.net/allow-url-fopen
+allow_url_fopen = On
+
+; Whether to allow include/require to open URLs (like https:// or ftp://) as files.
+; https://php.net/allow-url-include
+allow_url_include = Off
+
+; Define the anonymous ftp password (your email address). PHP's default setting
+; for this is empty.
+; https://php.net/from
+;from="john@doe.com"
+
+; Define the User-Agent string. PHP's default setting for this is empty.
+; https://php.net/user-agent
+;user_agent="PHP"
+
+; Default timeout for socket based streams (seconds)
+; https://php.net/default-socket-timeout
+default_socket_timeout = 60
+
+; If your scripts have to deal with files from Macintosh systems,
+; or you are running on a Mac and need to deal with files from
+; unix or win32 systems, setting this flag will cause PHP to
+; automatically detect the EOL character in those files so that
+; fgets() and file() will work regardless of the source of the file.
+; https://php.net/auto-detect-line-endings
+;auto_detect_line_endings = Off
+
+;;;;;;;;;;;;;;;;;;;;;;
+; Dynamic Extensions ;
+;;;;;;;;;;;;;;;;;;;;;;
+
+; If you wish to have an extension loaded automatically, use the following
+; syntax:
+;
+; extension=modulename
+;
+; For example:
+;
+; extension=mysqli
+;
+; When the extension library to load is not located in the default extension
+; directory, You may specify an absolute path to the library file:
+;
+; extension=/path/to/extension/mysqli.so
+;
+; Note : The syntax used in previous PHP versions ('extension=.so' and
+; 'extension='php_.dll') is supported for legacy reasons and may be
+; deprecated in a future PHP major version. So, when it is possible, please
+; move to the new ('extension=) syntax.
+;
+; Notes for Windows environments :
+;
+; - Many DLL files are located in the ext/
+; extension folders as well as the separate PECL DLL download.
+; Be sure to appropriately set the extension_dir directive.
+;
+;extension=bz2
+;extension=curl
+;extension=exif
+;extension=ffi
+;extension=ftp
+;extension=fileinfo
+;extension=gd
+;extension=gettext
+;extension=gmp
+;extension=intl
+;extension=ldap
+;extension=mbstring
+;extension=mysqli
+;extension=odbc
+;extension=openssl
+;extension=pdo_firebird
+;extension=pdo_mysql
+;extension=pdo_odbc
+;extension=pdo_pgsql
+;extension=pdo_sqlite
+;extension=pgsql
+;extension=shmop
+
+; The MIBS data available in the PHP distribution must be installed.
+; See https://www.php.net/manual/en/snmp.installation.php
+;extension=snmp
+
+;extension=soap
+;extension=sockets
+;extension=sodium
+;extension=sqlite3
+;extension=tidy
+;extension=xsl
+;extension=zip
+
+;;;;;;;;;;;;;;;;;;;
+; Module Settings ;
+;;;;;;;;;;;;;;;;;;;
+
+[CLI Server]
+; Whether the CLI web server uses ANSI color coding in its terminal output.
+cli_server.color = On
+
+[Date]
+; Defines the default timezone used by the date functions
+; https://php.net/date.timezone
+;date.timezone =
+
+; https://php.net/date.default-latitude
+;date.default_latitude = 31.7667
+
+; https://php.net/date.default-longitude
+;date.default_longitude = 35.2333
+
+; https://php.net/date.sunrise-zenith
+;date.sunrise_zenith = 90.833333
+
+; https://php.net/date.sunset-zenith
+;date.sunset_zenith = 90.833333
+
+[filter]
+; https://php.net/filter.default
+;filter.default = unsafe_raw
+
+; https://php.net/filter.default-flags
+;filter.default_flags =
+
+[iconv]
+; Use of this INI entry is deprecated, use global input_encoding instead.
+; If empty, default_charset or input_encoding or iconv.input_encoding is used.
+; The precedence is: default_charset < input_encoding < iconv.input_encoding
+;iconv.input_encoding =
+
+; Use of this INI entry is deprecated, use global internal_encoding instead.
+; If empty, default_charset or internal_encoding or iconv.internal_encoding is used.
+; The precedence is: default_charset < internal_encoding < iconv.internal_encoding
+;iconv.internal_encoding =
+
+; Use of this INI entry is deprecated, use global output_encoding instead.
+; If empty, default_charset or output_encoding or iconv.output_encoding is used.
+; The precedence is: default_charset < output_encoding < iconv.output_encoding
+; To use an output encoding conversion, iconv's output handler must be set
+; otherwise output encoding conversion cannot be performed.
+;iconv.output_encoding =
+
+[intl]
+;intl.default_locale =
+; This directive allows you to produce PHP errors when some error
+; happens within intl functions. The value is the level of the error produced.
+; Default is 0, which does not produce any errors.
+; This directive is deprecated.
+;intl.error_level = E_WARNING
+; If enabled this directive indicates that when an error occurs within an
+; intl function a IntlException should be thrown.
+; Default is Off, which means errors need to be handled manually.
+;intl.use_exceptions = On
+
+[sqlite3]
+; Directory pointing to SQLite3 extensions
+; https://php.net/sqlite3.extension-dir
+;sqlite3.extension_dir =
+
+; SQLite defensive mode flag (only available from SQLite 3.26+)
+; When the defensive flag is enabled, language features that allow ordinary
+; SQL to deliberately corrupt the database file are disabled. This forbids
+; writing directly to the schema, shadow tables (eg. FTS data tables), or
+; the sqlite_dbpage virtual table.
+; https://www.sqlite.org/c3ref/c_dbconfig_defensive.html
+; (for older SQLite versions, this flag has no use)
+;sqlite3.defensive = 1
+
+[Pcre]
+; PCRE library backtracking limit.
+; https://php.net/pcre.backtrack-limit
+;pcre.backtrack_limit=100000
+
+; PCRE library recursion limit.
+; Please note that if you set this value to a high number you may consume all
+; the available process stack and eventually crash PHP (due to reaching the
+; stack size limit imposed by the Operating System).
+; https://php.net/pcre.recursion-limit
+;pcre.recursion_limit=100000
+
+; Enables or disables JIT compilation of patterns. This requires the PCRE
+; library to be compiled with JIT support.
+;pcre.jit=1
+
+[Pdo]
+; Whether to pool ODBC connections. Can be one of "strict", "relaxed" or "off"
+; https://php.net/pdo-odbc.connection-pooling
+;pdo_odbc.connection_pooling=strict
+
+[Pdo_mysql]
+; Default socket name for local MySQL connects. If empty, uses the built-in
+; MySQL defaults.
+pdo_mysql.default_socket=
+
+[Phar]
+; https://php.net/phar.readonly
+;phar.readonly = On
+
+; https://php.net/phar.require-hash
+;phar.require_hash = On
+
+;phar.cache_list =
+
+[mail function]
+; For Win32 only.
+; https://php.net/smtp
+SMTP = localhost
+; https://php.net/smtp-port
+smtp_port = 25
+
+; For Win32 only.
+; https://php.net/sendmail-from
+;sendmail_from = me@example.com
+
+; For Unix only. You may supply arguments as well (default: "sendmail -t -i").
+; https://php.net/sendmail-path
+;sendmail_path =
+
+; Force the addition of the specified parameters to be passed as extra parameters
+; to the sendmail binary. These parameters will always replace the value of
+; the 5th parameter to mail().
+;mail.force_extra_parameters =
+
+; Add X-PHP-Originating-Script: that will include uid of the script followed by the filename
+mail.add_x_header = Off
+
+; Use mixed LF and CRLF line separators to keep compatibility with some
+; RFC 2822 non conformant MTA.
+mail.mixed_lf_and_crlf = Off
+
+; Control line ending mode for mail messages and headers.
+; Possible values: "crlf" (default), "lf", "mixed", "os"
+; - crlf: Use CRLF line endings
+; - lf: Use LF line endings only (converts CRLF in message to LF)
+; - mixed: Same as mail.mixed_lf_and_crlf = On
+; - os: Use CRLF on Windows, LF on other systems
+mail.cr_lf_mode = crlf
+
+; The path to a log file that will log all mail() calls. Log entries include
+; the full path of the script, line number, To address and headers.
+;mail.log =
+; Log mail to syslog (Event Log on Windows).
+;mail.log = syslog
+
+[ODBC]
+; https://php.net/odbc.default-db
+;odbc.default_db = Not yet implemented
+
+; https://php.net/odbc.default-user
+;odbc.default_user = Not yet implemented
+
+; https://php.net/odbc.default-pw
+;odbc.default_pw = Not yet implemented
+
+; Controls the ODBC cursor model.
+; Default: SQL_CURSOR_STATIC (default).
+;odbc.default_cursortype
+
+; Allow or prevent persistent links.
+; https://php.net/odbc.allow-persistent
+odbc.allow_persistent = On
+
+; Check that a connection is still valid before reuse.
+; https://php.net/odbc.check-persistent
+odbc.check_persistent = On
+
+; Maximum number of persistent links. -1 means no limit.
+; https://php.net/odbc.max-persistent
+odbc.max_persistent = -1
+
+; Maximum number of links (persistent + non-persistent). -1 means no limit.
+; https://php.net/odbc.max-links
+odbc.max_links = -1
+
+; Handling of LONG fields. Returns number of bytes to variables. 0 means
+; passthru.
+; https://php.net/odbc.defaultlrl
+odbc.defaultlrl = 4096
+
+; Handling of binary data. 0 means passthru, 1 return as is, 2 convert to char.
+; See the documentation on odbc_binmode and odbc_longreadlen for an explanation
+; of odbc.defaultlrl and odbc.defaultbinmode
+; https://php.net/odbc.defaultbinmode
+odbc.defaultbinmode = 1
+
+[MySQLi]
+
+; Maximum number of persistent links. -1 means no limit.
+; https://php.net/mysqli.max-persistent
+mysqli.max_persistent = -1
+
+; Allow accessing, from PHP's perspective, local files with LOAD DATA statements
+; https://php.net/mysqli.allow_local_infile
+;mysqli.allow_local_infile = On
+
+; It allows the user to specify a folder where files that can be sent via LOAD DATA
+; LOCAL can exist. It is ignored if mysqli.allow_local_infile is enabled.
+;mysqli.local_infile_directory =
+
+; Allow or prevent persistent links.
+; https://php.net/mysqli.allow-persistent
+mysqli.allow_persistent = On
+
+; Maximum number of links. -1 means no limit.
+; https://php.net/mysqli.max-links
+mysqli.max_links = -1
+
+; Default port number for mysqli_connect().
+; https://php.net/mysqli.default-port
+mysqli.default_port = 3306
+
+; Default socket name for local MySQL connects. If empty, uses the built-in
+; MySQL defaults.
+; https://php.net/mysqli.default-socket
+mysqli.default_socket =
+
+; Default host for mysqli_connect().
+; https://php.net/mysqli.default-host
+mysqli.default_host =
+
+; Default user for mysqli_connect().
+; https://php.net/mysqli.default-user
+mysqli.default_user =
+
+; Default password for mysqli_connect().
+; Note that this is generally a *bad* idea to store passwords in this file.
+; *Any* user with PHP access can run 'echo get_cfg_var("mysqli.default_pw")
+; and reveal this password! And of course, any users with read access to this
+; file will be able to reveal the password as well.
+; https://php.net/mysqli.default-pw
+mysqli.default_pw =
+
+; If this option is enabled, closing a persistent connection will rollback
+; any pending transactions of this connection, before it is put back
+; into the persistent connection pool.
+;mysqli.rollback_on_cached_plink = Off
+
+[mysqlnd]
+; Enable / Disable collection of general statistics by mysqlnd which can be
+; used to tune and monitor MySQL operations.
+mysqlnd.collect_statistics = On
+
+; Enable / Disable collection of memory usage statistics by mysqlnd which can be
+; used to tune and monitor MySQL operations.
+; Default Value: Off
+; Development Value: On
+; Production Value: Off
+mysqlnd.collect_memory_statistics = On
+
+; Records communication from all extensions using mysqlnd to the specified log
+; file.
+; https://php.net/mysqlnd.debug
+;mysqlnd.debug =
+
+; Defines which queries will be logged.
+;mysqlnd.log_mask = 0
+
+; Default size of the mysqlnd memory pool, which is used by result sets.
+;mysqlnd.mempool_default_size = 16000
+
+; Size of a pre-allocated buffer used when sending commands to MySQL in bytes.
+;mysqlnd.net_cmd_buffer_size = 2048
+
+; Size of a pre-allocated buffer used for reading data sent by the server in
+; bytes.
+;mysqlnd.net_read_buffer_size = 32768
+
+; Timeout for network requests in seconds.
+;mysqlnd.net_read_timeout = 31536000
+
+; SHA-256 Authentication Plugin related. File with the MySQL server public RSA
+; key.
+;mysqlnd.sha256_server_public_key =
+
+[PostgreSQL]
+; Allow or prevent persistent links.
+; https://php.net/pgsql.allow-persistent
+pgsql.allow_persistent = On
+
+; Detect broken persistent links always with pg_pconnect().
+; Auto reset feature requires a little overheads.
+; https://php.net/pgsql.auto-reset-persistent
+pgsql.auto_reset_persistent = Off
+
+; Maximum number of persistent links. -1 means no limit.
+; https://php.net/pgsql.max-persistent
+pgsql.max_persistent = -1
+
+; Maximum number of links (persistent+non persistent). -1 means no limit.
+; https://php.net/pgsql.max-links
+pgsql.max_links = -1
+
+; Ignore PostgreSQL backends Notice message or not.
+; Notice message logging require a little overheads.
+; https://php.net/pgsql.ignore-notice
+pgsql.ignore_notice = 0
+
+; Log PostgreSQL backends Notice message or not.
+; Unless pgsql.ignore_notice=0, module cannot log notice message.
+; https://php.net/pgsql.log-notice
+pgsql.log_notice = 0
+
+[bcmath]
+; Number of decimal digits for all bcmath functions.
+; https://php.net/bcmath.scale
+bcmath.scale = 0
+
+[browscap]
+; https://php.net/browscap
+;browscap = extra/browscap.ini
+
+[Session]
+; Handler used to store/retrieve data.
+; https://php.net/session.save-handler
+session.save_handler = files
+
+; Argument passed to save_handler. In the case of files, this is the path
+; where data files are stored. Note: Windows users have to change this
+; variable in order to use PHP's session functions.
+;
+; The path can be defined as:
+;
+; session.save_path = "N;/path"
+;
+; where N is an integer. Instead of storing all the session files in
+; /path, what this will do is use subdirectories N-levels deep, and
+; store the session data in those directories. This is useful if
+; your OS has problems with many files in one directory, and is
+; a more efficient layout for servers that handle many sessions.
+;
+; NOTE 1: PHP will not create this directory structure automatically.
+; You can use the script in the ext/session dir for that purpose.
+; NOTE 2: See the section on garbage collection below if you choose to
+; use subdirectories for session storage
+;
+; The file storage module creates files using mode 600 by default.
+; You can change that by using
+;
+; session.save_path = "N;MODE;/path"
+;
+; where MODE is the octal representation of the mode. Note that this
+; does not overwrite the process's umask.
+; https://php.net/session.save-path
+;session.save_path = "/tmp"
+
+; Whether to use strict session mode.
+; Strict session mode does not accept an uninitialized session ID, and
+; regenerates the session ID if the browser sends an uninitialized session ID.
+; Strict mode protects applications from session fixation via a session adoption
+; vulnerability. It is disabled by default for maximum compatibility, but
+; enabling it is encouraged.
+; https://wiki.php.net/rfc/strict_sessions
+session.use_strict_mode = 0
+
+; Whether to use cookies.
+; https://php.net/session.use-cookies
+session.use_cookies = 1
+
+; https://php.net/session.cookie-secure
+;session.cookie_secure =
+
+; https://php.net/session.cookie-partitioned
+;session.cookie_partitioned = 0
+
+; This option forces PHP to fetch and use a cookie for storing and maintaining
+; the session id. We encourage this operation as it's very helpful in combating
+; session hijacking when not specifying and managing your own session id. It is
+; not the be-all and end-all of session hijacking defense, but it's a good start.
+; https://php.net/session.use-only-cookies
+session.use_only_cookies = 1
+
+; Name of the session (used as cookie name).
+; https://php.net/session.name
+session.name = PHPSESSID
+
+; Initialize session on request startup.
+; https://php.net/session.auto-start
+session.auto_start = 0
+
+; Lifetime in seconds of cookie or, if 0, until browser is restarted.
+; https://php.net/session.cookie-lifetime
+session.cookie_lifetime = 0
+
+; The path for which the cookie is valid.
+; https://php.net/session.cookie-path
+session.cookie_path = /
+
+; The domain for which the cookie is valid.
+; https://php.net/session.cookie-domain
+session.cookie_domain =
+
+; Whether or not to add the httpOnly flag to the cookie, which makes it
+; inaccessible to browser scripting languages such as JavaScript.
+; https://php.net/session.cookie-httponly
+session.cookie_httponly =
+
+; Add SameSite attribute to cookie to help mitigate Cross-Site Request Forgery (CSRF/XSRF)
+; Current valid values are "Strict", "Lax" or "None". When using "None",
+; make sure to include the quotes, as `none` is interpreted like `false` in ini files.
+; https://tools.ietf.org/html/draft-west-first-party-cookies-07
+session.cookie_samesite =
+
+; Handler used to serialize data. php is the standard serializer of PHP.
+; https://php.net/session.serialize-handler
+session.serialize_handler = php
+
+; Defines the probability that the 'garbage collection' process is started on every
+; session initialization. The probability is calculated by using gc_probability/gc_divisor,
+; e.g. 1/100 means there is a 1% chance that the GC process starts on each request.
+; Default Value: 1
+; Development Value: 1
+; Production Value: 1
+; https://php.net/session.gc-probability
+session.gc_probability = 1
+
+; Defines the probability that the 'garbage collection' process is started on every
+; session initialization. The probability is calculated by using gc_probability/gc_divisor,
+; e.g. 1/100 means there is a 1% chance that the GC process starts on each request.
+; For high volume production servers, using a value of 1000 is a more efficient approach.
+; Default Value: 100
+; Development Value: 1000
+; Production Value: 1000
+; https://php.net/session.gc-divisor
+session.gc_divisor = 1000
+
+; After this number of seconds, stored data will be seen as 'garbage' and
+; cleaned up by the garbage collection process.
+; https://php.net/session.gc-maxlifetime
+session.gc_maxlifetime = 1440
+
+; NOTE: If you are using the subdirectory option for storing session files
+; (see session.save_path above), then garbage collection does *not*
+; happen automatically. You will need to do your own garbage
+; collection through a shell script, cron entry, or some other method.
+; For example, the following script is the equivalent of setting
+; session.gc_maxlifetime to 1440 (1440 seconds = 24 minutes):
+; find /path/to/sessions -cmin +24 -type f | xargs rm
+
+; Check HTTP Referer to invalidate externally stored URLs containing ids.
+; HTTP_REFERER has to contain this substring for the session to be
+; considered as valid.
+; https://php.net/session.referer-check
+session.referer_check =
+
+; Set to {nocache,private,public,} to determine HTTP caching aspects
+; or leave this empty to avoid sending anti-caching headers.
+; https://php.net/session.cache-limiter
+session.cache_limiter = nocache
+
+; Document expires after n minutes.
+; https://php.net/session.cache-expire
+session.cache_expire = 180
+
+; trans sid support is disabled by default.
+; Use of trans sid may risk your users' security.
+; Use this option with caution.
+; - User may send URL contains active session ID
+; to other person via. email/irc/etc.
+; - URL that contains active session ID may be stored
+; in publicly accessible computer.
+; - User may access your site with the same session ID
+; always using URL stored in browser's history or bookmarks.
+; https://php.net/session.use-trans-sid
+session.use_trans_sid = 0
+
+; The URL rewriter will look for URLs in a defined set of HTML tags.
+;