Количество 4
Количество 4
CVE-2026-46635
Twig is a template language for PHP. Prior to 3.26.0, the column filter passes object arrays to PHP array_column(), which reads public and magic properties without reaching CoreExtension::getAttribute() or SandboxExtension::checkPropertyAllowed(), allowing an untrusted template author with column in allowedFilters to read properties that are not in the sandbox allowlist. This issue is fixed in version 3.26.0.
CVE-2026-46635
Twig is a template language for PHP. Prior to 3.26.0, the column filter passes object arrays to PHP array_column(), which reads public and magic properties without reaching CoreExtension::getAttribute() or SandboxExtension::checkPropertyAllowed(), allowing an untrusted template author with column in allowedFilters to read properties that are not in the sandbox allowlist. This issue is fixed in version 3.26.0.
CVE-2026-46635
Twig is a template language for PHP. Prior to 3.26.0, the column filte ...
GHSA-vcc8-phrv-43wj
Twig: Sandbox property allowlist bypass via the `column` filter (array_column on objects)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-46635 Twig is a template language for PHP. Prior to 3.26.0, the column filter passes object arrays to PHP array_column(), which reads public and magic properties without reaching CoreExtension::getAttribute() or SandboxExtension::checkPropertyAllowed(), allowing an untrusted template author with column in allowedFilters to read properties that are not in the sandbox allowlist. This issue is fixed in version 3.26.0. | CVSS3: 4.3 | 0% Низкий | 28 дней назад | |
CVE-2026-46635 Twig is a template language for PHP. Prior to 3.26.0, the column filter passes object arrays to PHP array_column(), which reads public and magic properties without reaching CoreExtension::getAttribute() or SandboxExtension::checkPropertyAllowed(), allowing an untrusted template author with column in allowedFilters to read properties that are not in the sandbox allowlist. This issue is fixed in version 3.26.0. | CVSS3: 4.3 | 0% Низкий | 28 дней назад | |
CVE-2026-46635 Twig is a template language for PHP. Prior to 3.26.0, the column filte ... | CVSS3: 4.3 | 0% Низкий | 28 дней назад | |
GHSA-vcc8-phrv-43wj Twig: Sandbox property allowlist bypass via the `column` filter (array_column on objects) | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу