Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-24425

Опубликовано: 20 мая 2026
Источник: nvd
CVSS3: 8.8
CVSS3: 9.9
EPSS Низкий

Описание

Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vulnerability when using a SourcePolicyInterface that allows attackers with template rendering capabilities to pass arbitrary PHP callables to sort, filter, map, and reduce filters. Attackers can exploit the runtime check that fails to use the current template source to bypass sandbox restrictions and execute arbitrary code when the sandbox is enabled through a source policy rather than globally.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:symfony:twig:*:*:*:*:*:*:*:*
Версия от 2.16.0 (включая) до 2.16.1 (включая)
cpe:2.3:a:symfony:twig:*:*:*:*:*:*:*:*
Версия от 3.9.0 (включая) до 3.26.0 (исключая)

EPSS

Процентиль: 52%
0.00758
Низкий

8.8 High

CVSS3

9.9 Critical

CVSS3

Дефекты

CWE-693

Связанные уязвимости

CVSS3: 8.8
ubuntu
3 месяца назад

Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vulnerability when using a SourcePolicyInterface that allows attackers with template rendering capabilities to pass arbitrary PHP callables to sort, filter, map, and reduce filters. Attackers can exploit the runtime check that fails to use the current template source to bypass sandbox restrictions and execute arbitrary code when the sandbox is enabled through a source policy rather than globally.

CVSS3: 8.8
debian
3 месяца назад

Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass ...

CVSS3: 8.8
github
3 месяца назад

Twig: Possible sandbox bypass when using a source policy

EPSS

Процентиль: 52%
0.00758
Низкий

8.8 High

CVSS3

9.9 Critical

CVSS3

Дефекты

CWE-693