This Symfony bundle provides a server implementation for handling single and multiple file uploads using either FineUploader, jQuery File Uploader, YUI3 Uploader, Uploadify, FancyUpload, MooUpload, Plupload or Dropzone. Features include chunked uploads, orphanages, Gaufrette and Flysystem support.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2020-5237 oneup/uploader-bundle is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 2.0.0 - 2.1.5 and 1.0.0 - 1.9.3. | 1.0.0 - 1.9.32.0.0 - 2.1.5 | High |
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.4 || ^3.0 | — | — |
symfony/mime Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/yaml Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/asset Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/finder Version ^6.0 || ^7.0 || ^8.0 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant