Количество 4
Количество 4
CVE-2018-13818
Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it
CVE-2018-13818
Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it
CVE-2018-13818
Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the ...
GHSA-rgff-87c8-rh44
** DISPUTED ** Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-13818 Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it | CVSS3: 9.8 | 1% Низкий | больше 7 лет назад | |
CVE-2018-13818 Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it | CVSS3: 9.8 | 1% Низкий | больше 7 лет назад | |
CVE-2018-13818 Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the ... | CVSS3: 9.8 | 1% Низкий | больше 7 лет назад | |
GHSA-rgff-87c8-rh44 ** DISPUTED ** Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the vendor points out that Twig itself is not a web application and states that it is the responsibility of web applications using Twig to properly wrap input to it. | CVSS3: 9.8 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу