Provides a tight integration between Symfony components and the Symfony full-stack framework
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2014-4931 symfony/framework-bundle is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 2.0.0 - 2.3.18, 2.4.0 - 2.4.8 and 2.5.0 - 2.5.2. | 2.0.0 - 2.3.182.4.0 - 2.4.82.5.0 - 2.5.2 | High |
CVE-2022-23601 symfony/framework-bundle is vulnerable to Cross-Site Request Forgery (CSRF) in versions 5.3.14 - 5.3.14, 5.4.3 - 5.4.3 and 6.0.3 - 6.0.3. | 5.3.14 - 5.3.145.4.3 - 5.4.36.0.3 - 6.0.3 | High |
CVE-2019-10909 symfony/framework-bundle is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 2.7.0 - 2.7.51, 2.8.0 - 2.8.50, 3.0.0 - 3.4.26, 4.0.0 - 4.1.12 and 4.2.0 - 4.2.7. | 2.7.0 - 2.7.512.8.0 - 2.8.503.0.0 - 3.4.26 +2 more | Medium |
| Dependency | Last Release | Score |
|---|---|---|
symfony/cache Version ^7.4|^8.0 | — | — |
symfony/config Version ^7.4.4|^8.0.4 | — | — |
symfony/finder Version ^7.4|^8.0 | — | — |
symfony/routing Version ^7.4|^8.0 | — | — |
symfony/filesystem Version ^7.4|^8.0 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant