Symfony Security Component - Core Library
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2017-11365 symfony/security-core is vulnerable to Improper Access Control in versions 2.7.30 - 2.7.32, 2.8.23 - 2.8.25, 3.2.10 - 3.2.12 and 3.3.3 - 3.3.5. | 2.7.30 - 2.7.322.8.23 - 2.8.253.2.10 - 3.2.12 +1 more | Critical |
CVE-2016-1902 symfony/security-core is vulnerable to Insufficient Entropy in PRNG in versions 2.4.0 - 2.6.13 and 2.7.0 - 2.7.9. | 2.4.0 - 2.6.132.7.0 - 2.7.9 | High |
CVE-2018-11407 symfony/security-core is vulnerable to Improper Authentication in versions 2.8.0 - 2.8.37, 3.0.0 - 3.3.17, 3.4.0 - 3.4.7 and 4.0.0 - 4.0.7. | 2.8.0 - 2.8.373.0.0 - 3.3.173.4.0 - 3.4.7 +1 more | Critical |
CVE-2016-2403 symfony/security-core is vulnerable to Improper Authentication in versions 2.8.0 - 2.8.6 and 3.0.0 - 3.0.6. | 2.8.0 - 2.8.63.0.0 - 3.0.6 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
symfony/password-hasher Version ^7.4|^8.0 | — | — |
symfony/service-contracts Version ^2.5|^3 | — | — |
symfony/event-dispatcher-contracts Version ^2.5|^3 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant