Title |
Severity |
Exploit |
Date |
Affected Version |
CVE-2014-6072
|
High
|
|
May 30, 2024
|
>= 2.0.0 < 2.3.19
>= 2.4.0 < 2.4.9
>= 2.5.0 < 2.5.4
|
Symfony2 improper IP based access control
|
Medium
|
|
May 30, 2024
|
>= 2.0.0 < 2.0.19
>= 2.1.0 < 2.1.4
|
Symfony XML Entity Expansion security vulnerability
|
High
|
|
May 30, 2024
|
>= 2.0.0 < 2.0.17
|
Symfony XML decoding attack vector through external entities
|
Critical
|
|
May 30, 2024
|
>= 2.0.0 < 2.0.11
|
Symfony may allow a user to switch to using another user's identity
|
Medium
|
|
May 30, 2024
|
>= 2.0.0 < 2.0.6
|
CVE-2014-5245
|
High
|
|
May 30, 2024
|
>= 2.0.0 < 2.3.19
>= 2.4.0 < 2.4.9
>= 2.5.0 < 2.5.4
|
CVE-2015-2309
|
Medium
|
|
May 30, 2024
|
>= 2.0.0 < 2.3.27
>= 2.4.0 < 2.5.11
>= 2.6.0 < 2.6.6
|
CVE-2014-6061
|
Medium
|
|
May 30, 2024
|
>= 2.0.0 < 2.3.19
>= 2.4.0 < 2.4.9
>= 2.5.0 < 2.5.4
|
CVE-2014-5244
|
High
|
|
May 30, 2024
|
>= 2.0.0 < 2.3.19
>= 2.4.0 < 2.4.9
>= 2.5.0 < 2.5.4
|
Symfony2 security issue when the trust proxy mode is enabled
|
Medium
|
|
May 30, 2024
|
>= 2.0.0 < 2.0.19
>= 2.1.0 < 2.1.4
|