Listed below are 3 of the newest known vulnerabilities associated with the vendor "Symfony".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-41270 Symfony/Serializer handles serializing and deserializing data structures for Symfony, a PHP framework for web and console app... 6.5 - MEDIUM 2021-11-24 2021-12-03
CVE-2021-41268 Symfony/SecurityBundle is the security system for Symfony, a PHP framework for web and console applications and a set of reus... 8.8 - HIGH 2021-11-24 2021-11-24
CVE-2021-41267 Symfony/Http-Kernel is the HTTP kernel component for Symfony, a PHP framework for web and console applications and a set of r... 6.5 - MEDIUM 2021-11-24 2021-11-24
CVE-2021-41169 Sulu is an open-source PHP content management system based on the Symfony framework. In versions before 1.6.43 are subject to... 4.8 - MEDIUM 2021-10-21 2021-10-21
CVE-2019-9942 A sandbox information disclosure exists in Twig before 1.38.0 and 2.x before 2.7.0 because, under some circumstances, it is p... 3.7 - LOW 2019-03-23 2021-07-21
CVE-2018-13818 ** DISPUTED ** Twig before 2.4.4 allows Server-Side Template Injection (SSTI) via the search search_key parameter. NOTE: the ... 9.8 - CRITICAL 2018-07-10 2019-03-08
CVE-2015-7809 The displayBlock function Template.php in Sensio Labs Twig before 1.20.0, when Sandbox mode is enabled, allows remote attacke... 6.8 - MEDIUM 2015-11-06 2018-10-30

