symfony/security
Ecosystem:
packagist
packagist
Package URL:
pkg:composer/symfony/security
Total PRs:
1 Dependabot PR
1 Dependabot PR
Latest PR:
about 2 years ago
about 2 years ago
Unique Repositories:
1 repository
1 repository
Unique Repos (30 days):
0 repositories
0 repositories
Security Advisories
Symphony Denial of Service Via Overlong Usernames
GHSA-whgv-8cg3-7hcm
CVE-2016-4423
HIGH
published about 4 years ago
• updated about 17 hours ago
The attemptAuthentication function in `Component/Security/Http/Firewall/UsernamePasswordFormAuthenticationListener.php` in Symfony before 2.3.41, 2...
Symfony CSRF Vulnerability
GHSA-92x6-h2gr-8gxq
CVE-2017-16653
MODERATE
published about 4 years ago
• updated 1 day ago
An issue was discovered in Symfony before 2.7.38, 2.8.31, 3.2.14, 3.3.13, 3.4-BETA5, and 4.0-BETA5. The current implementation of CSRF protection i...
Symfony Allows URI Restrictions Bypass Via Double-Encoded String
GHSA-83c3-qx27-2rwr
CVE-2012-6431
MODERATE
published about 4 years ago
• updated 11 days ago
On the Symfony 2.0.x version, there's a security issue that allows access to routes protected by a firewall even when the user is not logged in.
B...
Improper authentication in Symfony
GHSA-cchx-mfrc-fwqr
CVE-2019-10911
HIGH
published over 6 years ago
• updated 2 minutes ago
In Symfony before 2.7.51, 2.8.x before 2.8.50, 3.x before 3.4.26, 4.x before 4.1.12, and 4.2.x before 4.2.7, a vulnerability would allow an attacke...
Symfony Incorrect Access Control
GHSA-q87v-q8fw-gmj5
CVE-2017-11365
CRITICAL
published about 4 years ago
• updated about 16 hours ago
Certain Symfony products are affected by: Incorrect Access Control. This affects Symfony 2.7.30 and Symfony 2.8.23 and Symfony 3.2.10 and Symfony 3...
Recent PRs (filtered by: Patch PRs )
Bump the composer group across 1 directory with 14 updates
2.8.11 → 2.8.52
Patch PR
Open
about 2 years ago
1 comment
Package Details
| Name: | symfony/security |
| Ecosystem: | packagist |
| PURL Type: | composer |
| Package URL: | pkg:composer/symfony/security |
| JSON API: | View JSON |
Security Advisories
Package Information
Description:
Provides a complete security system for your web application
| Repository: | https://github.com/symfony/security |
| Homepage: | https://symfony.com |
| Latest Release: |
v4.4.50
over 3 years ago |
| Dependent Repos: | 4,696 |
| Dependent Packages: | 716 |
| Downloads: | 24,213,721 |
| Ranking: | Top 0.1385% by dependent repos Top 0.1446% by downloads Top 0.052% by dependent pkgs |
PR Types
Patch
1 (100.0%)