Title: False Positive PHP Version
Last modified: January 30, 2024

---

# False Positive PHP Version

 *  Resolved [lecareroy](https://wordpress.org/support/users/lecareroy/)
 * (@lecareroy)
 * [2 years, 4 months ago](https://wordpress.org/support/topic/false-positive-php-version/)
 * We have tested the plugin on two of our pages. We have the problem that two PHP
   vulnerabilities are detected that do not exist. We also have the problem that
   we cannot ignore these two vulnerabilities.
 * The mail content:
 * PHP vulnerabilities
   PHP running: 8.1.22-he.0
 * PHP 8.1 < 8.1.22
   [+] CVE-2023-3824
 * PHP 8.1 < 8.1.22
   [+] CVE-2023-3823The problem is the php version detection. The
   detected version is 8.1.22-he.0. But PHP 8.1.22 is safe. The Plugin dont detect
   the version as 8.1.22 because of the appended chars “-he.0”.

Viewing 4 replies - 1 through 4 (of 4 total)

 *  Plugin Author [Javier Casares](https://wordpress.org/support/users/javiercasares/)
 * (@javiercasares)
 * [2 years, 4 months ago](https://wordpress.org/support/topic/false-positive-php-version/#post-17384572)
 * I’m going to do some testing and come back ASAP with an answer. Maybe I need 
   to change that in the API and not in the plugin…
 * Thanks for noticing.
 *  Plugin Author [Javier Casares](https://wordpress.org/support/users/javiercasares/)
 * (@javiercasares)
 * [2 years, 4 months ago](https://wordpress.org/support/topic/false-positive-php-version/#post-17385166)
 * I think I have a possible fix for this. I’ll probably release a new version soon.
 *  Thread Starter [lecareroy](https://wordpress.org/support/users/lecareroy/)
 * (@lecareroy)
 * [2 years, 4 months ago](https://wordpress.org/support/topic/false-positive-php-version/#post-17386484)
 * Thank you for the quick reply. A new version would be great 🙂
 *  Plugin Author [Javier Casares](https://wordpress.org/support/users/javiercasares/)
 * (@javiercasares)
 * [2 years, 4 months ago](https://wordpress.org/support/topic/false-positive-php-version/#post-17420505)
 * Thank you for your patience. The latest version should fix this.

Viewing 4 replies - 1 through 4 (of 4 total)

The topic ‘False Positive PHP Version’ is closed to new replies.

 * ![](https://ps.w.org/wpvulnerability/assets/icon.svg?rev=3387690)
 * [WPVulnerability](https://wordpress.org/plugins/wpvulnerability/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wpvulnerability/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wpvulnerability/)
 * [Active Topics](https://wordpress.org/support/plugin/wpvulnerability/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wpvulnerability/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wpvulnerability/reviews/)

 * 4 replies
 * 2 participants
 * Last reply from: [Javier Casares](https://wordpress.org/support/users/javiercasares/)
 * Last activity: [2 years, 4 months ago](https://wordpress.org/support/topic/false-positive-php-version/#post-17420505)
 * Status: resolved