Количество 4
Количество 4
CVE-2026-46628
Twig is a template language for PHP. Prior to 3.26.0, the deprecated spaceless filter is registered as safe for HTML, causing Twig autoescaping to emit attacker-controlled markup unescaped when spaceless is applied to untrusted input. This issue is fixed in version 3.26.0.
CVE-2026-46628
Twig is a template language for PHP. Prior to 3.26.0, the deprecated spaceless filter is registered as safe for HTML, causing Twig autoescaping to emit attacker-controlled markup unescaped when spaceless is applied to untrusted input. This issue is fixed in version 3.26.0.
CVE-2026-46628
Twig is a template language for PHP. Prior to 3.26.0, the deprecated s ...
GHSA-4j38-f5cw-54h7
Twig: The `spaceless` filter implicitly marks its output as safe
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-46628 Twig is a template language for PHP. Prior to 3.26.0, the deprecated spaceless filter is registered as safe for HTML, causing Twig autoescaping to emit attacker-controlled markup unescaped when spaceless is applied to untrusted input. This issue is fixed in version 3.26.0. | CVSS3: 5.4 | 0% Низкий | 28 дней назад | |
CVE-2026-46628 Twig is a template language for PHP. Prior to 3.26.0, the deprecated spaceless filter is registered as safe for HTML, causing Twig autoescaping to emit attacker-controlled markup unescaped when spaceless is applied to untrusted input. This issue is fixed in version 3.26.0. | CVSS3: 5.4 | 0% Низкий | 28 дней назад | |
CVE-2026-46628 Twig is a template language for PHP. Prior to 3.26.0, the deprecated s ... | CVSS3: 5.4 | 0% Низкий | 28 дней назад | |
GHSA-4j38-f5cw-54h7 Twig: The `spaceless` filter implicitly marks its output as safe | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу