- Notifications
You must be signed in to change notification settings - Fork9.6k
Security: symfony/symfony
Security
- Authentication Bypass via persisted RememberMe cookieGHSA-cg23-qf8f-62rr published
Nov 13, 2024 bynicolas-grekasHigh - Command execution hijack on Windows with Process classGHSA-qq5c-677p-737q published
Nov 6, 2024 bynicolas-grekasLow - Open redirect via browser-sanitized URLsGHSA-mrqx-rp3w-jpjp published
Nov 6, 2024 bynicolas-grekasLow - Incorrect response from Validator when input ends with `\n`GHSA-g3rh-rrhp-jhh9 published
Nov 6, 2024 bynicolas-grekasLow - Security::login does not take into account custom user_checkerGHSA-jxgr-3v7q-3w9v published
Nov 6, 2024 byfabpotLow - Internal address and port enumeration allowed by NoPrivateNetworkHttpClientGHSA-9c3x-r3wp-mgxm published
Nov 6, 2024 byfabpotLow - Ability to change environment from queryGHSA-x8vp-gf4q-mw5j published
Nov 6, 2024 byfabpotHigh - Potential XSS in WebhookControllerGHSA-72x2-5c85-6wmr published
Nov 10, 2023 bynicolas-grekasModerate - Potential XSS vulnerabilities in CodeExtension filtersGHSA-q847-2q57-wmr3 published
Nov 10, 2023 bynicolas-grekasLow - Possible session fixationGHSA-m2wj-r6g3-fxfx published
Nov 10, 2023 bynicolas-grekasModerate
Learn more about advisories related tosymfony/symfony in theGitHub Advisory Database