Package Health

kevinpapst/tabler-bundle

Admin/Backend theme bundle for Symfony based on Tabler.io

Latest 2.4.1PackagistPackagist

86%

Total Score

healthy

Healthy: regular releases and active multi-contributor maintenance support this release.

Are you affected? Scan for Free

Health Score Breakdown

Security policycaution

The repository has no security policy. This is a transparency gap for reporting and handling vulnerabilities, although it does not by itself indicate that the release is unsafe.

Workflow auditcaution

All 4 analyzed action references are unpinned, which weakens build reproducibility. The pull_request_target workflow had no untrusted checkout or script-injection finding, and two workflows use read-only permissions, so this remains a hygiene concern rather than a severe risk.

Vulnerabilities

TitleVersionsSeverity
AIKIDO-2024-10305 Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
kevinpapst/tabler-bundle is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.1 - 1.5.1.
0.1 - 1.5.1
Low

Package versions

Maintainers

Kevin Papst

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version ^3.0
—
—
symfony/asset
Version ^6.0 || ^7.0 || ^8.0
—
—
symfony/config
Version ^6.0 || ^7.0 || ^8.0
—
—
symfony/http-kernel
Version ^6.0 || ^7.0 || ^8.0
—
—
symfony/translation
Version ^6.0 || ^7.0 || ^8.0
—
—

Weekly Downloads

Info

Last Published
17 days ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform