Healthy and suitable to depend on. It has a long release history, frequent recent releases, active repository work from 13 contributors, and clear Symfony project backing. The repository lacks configured security-scanning tools, but other maintenance and transparency signals are strong.
94%
Total Score
100
100
94
100
The repository uses Composer build tooling, but no security-scanning tools were detected; this is a modest transparency gap rather than a severe health concern because other maintenance evidence is strong.
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10891 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. symfony/messenger is vulnerable to Deserialization of Untrusted Data in versions 7.4.0 - 7.4.10 and 8.0.0 - 8.0.10. | 7.4.0 - 7.4.108.0.0 - 8.0.10 | High |
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1|^2|^3 | — | — |
symfony/clock Version ^7.4|^8.0 | — | — |
symfony/deprecation-contracts Version ^2.5|^3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.