Количество 378
Количество 378
GHSA-xx3c-qf5g-hc39
Symfony has an Argument Injection in SendmailTransport via Dash-Prefixed Recipient Address
GHSA-xhh6-956q-4q69
Argument injection in a MimeTypeGuesser in Symfony
GHSA-x92h-wmg2-6hp7
Invalid HTTP method overrides allow possible XSS or other attacks in Symfony
GHSA-x6g4-fwcc-jj8w
Symfony has XXE (Local File Disclosure) in DomCrawler::addXmlContent() via validateOnParse = true
GHSA-x5qj-865h-mgvm
Symfony: HtmlSanitizer UrlAttributeSanitizer Misses URL Attributes
GHSA-x3cf-w64x-4cp2
Symfony Path Disclosure
GHSA-wvj5-r78r-hhfq
Symfony Authentication Bypass
GHSA-whgv-8cg3-7hcm
Symphony Denial of Service Via Overlong Usernames
GHSA-w4rc-rx25-8m86
Improper Input Validation in Symfony
GHSA-w2fr-65vp-mxw3
Deserialization of untrusted data in Symfony
GHSA-vvmr-8829-6whx
CSRF token missing in Symfony
GHSA-vqc8-7275-q272
Symfony has Email Header Injection via Non-Token Characters in Mime Parameter Names
GHSA-v3wm-qf9p-c549
Symfony: HtmlSanitizer URL Parser Deny Gates Underinclusive: Percent-Encoded BiDi Marks and Unicode Whitespace Bypass Visual-Spoofing Defense
GHSA-rrj9-5q2j-4gvr
Symfony: Mailomat Mailer Webhook Parser Reads the HMAC Algorithm from the Request: Signature Algorithm Downgrade
GHSA-rfcf-m67m-jcrq
Authentication granted to all firewalls instead of just one
GHSA-r7p7-qr7p-2rrf
Symfony Open Redirect
GHSA-r39x-jcww-82v6
Symfony's incorrect argument escaping under MSYS2/Git Bash can lead to destructive file operations on Windows
GHSA-r2rq-3h56-fqm4
Symfony DoS
GHSA-qw36-p97w-vcqr
Cookie persistence after password changes in symfony/security-bundle
GHSA-qq5c-677p-737q
Symfony vulnerable to command execution hijack on Windows with Process class
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-xx3c-qf5g-hc39 Symfony has an Argument Injection in SendmailTransport via Dash-Prefixed Recipient Address | 0% Низкий | 2 месяца назад | ||
GHSA-xhh6-956q-4q69 Argument injection in a MimeTypeGuesser in Symfony | CVSS3: 7.5 | 2% Низкий | больше 6 лет назад | |
GHSA-x92h-wmg2-6hp7 Invalid HTTP method overrides allow possible XSS or other attacks in Symfony | CVSS3: 9.8 | 2% Низкий | больше 6 лет назад | |
GHSA-x6g4-fwcc-jj8w Symfony has XXE (Local File Disclosure) in DomCrawler::addXmlContent() via validateOnParse = true | 0% Низкий | 2 месяца назад | ||
GHSA-x5qj-865h-mgvm Symfony: HtmlSanitizer UrlAttributeSanitizer Misses URL Attributes | 0% Низкий | около 2 месяцев назад | ||
GHSA-x3cf-w64x-4cp2 Symfony Path Disclosure | CVSS3: 5.3 | 4% Низкий | около 4 лет назад | |
GHSA-wvj5-r78r-hhfq Symfony Authentication Bypass | CVSS3: 9.8 | 3% Низкий | около 4 лет назад | |
GHSA-whgv-8cg3-7hcm Symphony Denial of Service Via Overlong Usernames | CVSS3: 7.5 | 2% Низкий | около 4 лет назад | |
GHSA-w4rc-rx25-8m86 Improper Input Validation in Symfony | CVSS3: 9.8 | 3% Низкий | больше 6 лет назад | |
GHSA-w2fr-65vp-mxw3 Deserialization of untrusted data in Symfony | CVSS3: 7.1 | 2% Низкий | больше 6 лет назад | |
GHSA-vvmr-8829-6whx CSRF token missing in Symfony | CVSS3: 8.1 | 1% Низкий | больше 4 лет назад | |
GHSA-vqc8-7275-q272 Symfony has Email Header Injection via Non-Token Characters in Mime Parameter Names | 0% Низкий | 2 месяца назад | ||
GHSA-v3wm-qf9p-c549 Symfony: HtmlSanitizer URL Parser Deny Gates Underinclusive: Percent-Encoded BiDi Marks and Unicode Whitespace Bypass Visual-Spoofing Defense | 0% Низкий | около 2 месяцев назад | ||
GHSA-rrj9-5q2j-4gvr Symfony: Mailomat Mailer Webhook Parser Reads the HMAC Algorithm from the Request: Signature Algorithm Downgrade | 0% Низкий | около 2 месяцев назад | ||
GHSA-rfcf-m67m-jcrq Authentication granted to all firewalls instead of just one | CVSS3: 6.8 | 1% Низкий | около 5 лет назад | |
GHSA-r7p7-qr7p-2rrf Symfony Open Redirect | CVSS3: 6.1 | 1% Низкий | около 4 лет назад | |
GHSA-r39x-jcww-82v6 Symfony's incorrect argument escaping under MSYS2/Git Bash can lead to destructive file operations on Windows | CVSS3: 6.3 | 0% Низкий | 6 месяцев назад | |
GHSA-r2rq-3h56-fqm4 Symfony DoS | CVSS3: 5.9 | 2% Низкий | около 4 лет назад | |
GHSA-qw36-p97w-vcqr Cookie persistence after password changes in symfony/security-bundle | CVSS3: 6.5 | 1% Низкий | больше 4 лет назад | |
GHSA-qq5c-677p-737q Symfony vulnerable to command execution hijack on Windows with Process class | CVSS3: 8.4 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу