Total vulnerabilities in the database
Twig is a template language for PHP. Under some circumstances, the sandbox security checks are not run which allows user-contributed templates to bypass the sandbox restrictions. This vulnerability is fixed in 1.44.8, 2.16.1, and 3.14.0.
Software | From | Fixed in |
---|---|---|
symfony / twig | 3.0.0 | 3.14.0 |
symfony / twig | 1.0.0 | 1.44.8 |
symfony / twig | 2.0.0 | 2.16.1 |