This Symfony bundle provides a server implementation for handling single and multiple file uploads using either FineUploader, jQuery File Uploader, YUI3 Uploader, Uploadify, FancyUpload, MooUpload, Plupload or Dropzone. Features include chunked uploads, orphanages, Gaufrette and Flysystem support.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2020-5237 oneup/uploader-bundle is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 2.0.0 - 2.1.5 and 1.0.0 - 1.9.3. | 1.0.0 - 1.9.32.0.0 - 2.1.5 |
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.4 || ^3.0 | — | — |
symfony/mime Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/yaml Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/asset Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/finder Version ^6.0 || ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant