Livromanowski Patched ✓
If you believe the patch exists and needs reporting:
Check system changelogs
Look in security advisories
Ask in relevant communities
Consider a misspelling – try searching for: livromanowski patched
Use this simple curl command to test if your endpoint is still vulnerable (do this only on your own test environment):
curl -X POST -H "Content-Type: application/x-www-form-urlencoded" -d "data=O%3A1%3A%22X%22%3A1%3A%7Bs%3A1%3A%22a%22%3BO%3A1%3A%22Y%22%3A1%3A%7Bs%3A1%3A%22b%22%3BR%3A2%3B%7D%7D" http://yourserver.com/endpoint
A patched server will return a 400 Bad Request or a generic error. A vulnerable server will return a PHP warning or a successful execution. If you believe the patch exists and needs reporting:
Most organizations did not even know they were running the vulnerable library because it was buried three levels deep in a Composer dependency tree. Software Bill of Materials (SBOM) is no longer optional.