Package Health

symfony/dependency-injection

Allows you to standardize and centralize the way objects are constructed in your application

Latest v8.1.8PackagistPackagist

88%

Total Score

healthy

Healthy—frequent releases and recent commits from an active, organization-backed, non-archived project outweigh concentrated contribution activity.

Are you affected? Scan for Free

Health Score Breakdown

Repo bus factorcaution

One contributor made 80% of the recent commits, creating concentration risk; two other contributors remain active, and organization backing provides some handoff capacity.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected, leaving a modest repository hygiene gap.

Vulnerabilities

TitleVersionsSeverity
CVE-2019-10910
symfony/dependency-injection is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 2.7.0 - 2.7.51, 2.8.0 - 2.8.50, 3.0.0 - 3.4.26, 4.0.0 - 4.1.12 and 4.2.0 - 4.2.7.
2.7.0 - 2.7.512.8.0 - 2.8.503.0.0 - 3.4.26 +2 more
Critical

Package versions

Maintainers

Fabien Potencier
Symfony Community

Direct Dependencies

DependencyLast ReleaseScore
psr/container
Version ^1.1|^2.0
—
—
symfony/var-exporter
Version ^8.1
—
—
symfony/service-contracts
Version ^3.6
—
—
symfony/deprecation-contracts
Version ^2.5|^3
—
—

Weekly Downloads

Info

Last Published
9 days ago
Created
15 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform