Vulnerabilities > Sensiolabs > Symfony > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-03 CVE-2022-24894 Unspecified vulnerability in Sensiolabs Symfony
Symfony is a PHP framework for web and console applications and a set of reusable PHP components.
network
low complexity
sensiolabs
8.8
2023-02-03 CVE-2022-24895 Unspecified vulnerability in Sensiolabs Symfony
Symfony is a PHP framework for web and console applications and a set of reusable PHP components.
network
low complexity
sensiolabs
8.8
2022-02-01 CVE-2022-23601 Unspecified vulnerability in Sensiolabs Symfony
Symfony is a PHP framework for web and console applications and a set of reusable PHP components.
network
low complexity
sensiolabs
8.8
2021-11-24 CVE-2021-41268 Unspecified vulnerability in Sensiolabs Symfony
Symfony/SecurityBundle is the security system for Symfony, a PHP framework for web and console applications and a set of reusable PHP components.
network
low complexity
sensiolabs
8.8
2021-06-17 CVE-2021-32693 Unspecified vulnerability in Sensiolabs Symfony 5.3.0/5.3.1
Symfony is a PHP framework for web and console applications and a set of reusable PHP components.
network
low complexity
sensiolabs
8.8
2020-09-02 CVE-2020-15094 In Symfony before versions 4.4.13 and 5.1.5, the CachingHttpClient class from the HttpClient Symfony component relies on the HttpCache class to handle requests.
network
low complexity
sensiolabs fedoraproject
8.8
2020-03-30 CVE-2020-5275 Incorrect Authorization vulnerability in Sensiolabs Symfony
In symfony/security-http before versions 4.4.7 and 5.0.7, when a `Firewall` checks access control rule, it iterate overs each rule's attributes and stops as soon as the accessDecisionManager decides to grant access on the attribute, preventing the check of next attributes that should have been take into account in an unanimous strategy.
network
low complexity
sensiolabs CWE-863
8.1
2019-11-21 CVE-2019-18888 Argument Injection or Modification vulnerability in multiple products
An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7.
network
low complexity
sensiolabs fedoraproject CWE-88
7.5
2019-11-21 CVE-2019-18887 Information Exposure Through Discrepancy vulnerability in multiple products
An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7.
network
high complexity
sensiolabs fedoraproject CWE-203
8.1
2019-11-01 CVE-2013-4751 Improper Input Validation vulnerability in multiple products
php-symfony2-Validator has loss of information during serialization
network
low complexity
sensiolabs fedoraproject redhat CWE-20
8.1