Build a fully-featured hypermedia or GraphQL API in minutes!
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2023-47639 api-platform/core is vulnerable to Generation of Error Message Containing Sensitive Information in versions 3.2.0 - 3.2.5. | 3.2.0 - 3.2.5 | Medium |
CVE-2025-23204 api-platform/core is vulnerable to Improper Input Validation in versions 3.3.8 - 3.3.15. | 3.3.8 - 3.3.15 | Medium |
AIKIDO-2024-10333 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. api-platform/core is vulnerable to Missing Authorization in versions 4.0.0 - 4.0.2. | 4.0.0 - 4.0.2 | High |
CVE-2023-25575 api-platform/core is vulnerable to Placement of User into Incorrect Group in versions 3.0.0 - 3.0.12, 3.1.0 - 3.1.3 and 2.6.0 - 2.7.10. | 2.6.0 - 2.7.103.0.0 - 3.0.123.1.0 - 3.1.3 | High |
CVE-2019-1000011 api-platform/core is vulnerable to Improper Access Control in versions 2.2.0 - 2.2.10 and 2.3.0 - 2.3.6. | 2.2.0 - 2.2.102.3.0 - 2.3.6 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
psr/cache Version ^1.0 || ^2.0 || ^3.0 | — | — |
psr/container Version ^1.0 || ^2.0 | — | — |
composer/semver Version ^3.4 | — | — |
symfony/web-link Version ^6.4 || ^7.1 || ^8.0 | — | — |
symfony/type-info Version ^7.4 || ^8.0 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant