sensiolabs
OSS Librariesoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting sensiolabs.
- CVE-2026-24739Symfony has incorrect argument escaping under MSYS2/Git Bash on Windows that can lead to destructive file operations6.3
- CVE-2025-64500Symfony's incorrect parsing of PATH_INFO can lead to limited authorization bypass7.3
- CVE-2024-50342Internal address and port enumeration allowed by NoPrivateNetworkHttpClient in symfony/http-client3.1
- CVE-2024-50345Open redirect via browser-sanitized URLs in symfony/http-foundation3.1
- CVE-2023-46735Symfony potential Cross-site Scripting in WebhookController6.1
- CVE-2023-46734Symfony potential Cross-site Scripting vulnerabilities in CodeExtension filters6.1
- CVE-2023-46733Symfony possible session fixation vulnerability6.5
- CVE-2022-24894Symfony storing cookie headers in HttpCache5.9
- CVE-2022-24895Symfony vulnerable to Session Fixation of CSRF tokens6.3
- CVE-2022-23601CSRF token missing in Symfony8.1
- CVE-2021-41270CSV Injection in Symfony6.5
- CVE-2021-41267Webcache Poisoning in Symfony6.5
- CVE-2021-41268Cookie persistence in Symfony6.5
- CVE-2021-32693Authentication granted with multiple firewalls6.8
- CVE-2021-21424Prevent user enumeration using Guard or the new Authenticator-based Security5.3