0145 GitHub stars
02Identifies missing entity loader protections in legacy and modern PHP versions
03Detects risky XSLT processor settings and unsafe PHP function registration
04Provides standardized severity reporting and actionable secure code fixes
05Scans PHP code for insecure SimpleXML and DOMDocument configurations
06Flags vulnerable SOAP, XML-RPC, and RSS feed parsing implementations