Vulnerabilities
Vulnerable Software
Sensiolabs:  >> Symfony  >> 4.1.11  Security Vulnerabilities
In Symfony before 2.7.51, 2.8.x before 2.8.50, 3.x before 3.4.26, 4.x before 4.1.12, and 4.2.x before 4.2.7, HTTP Methods provided as verbs or using the override header may be treated as trusted input, but they are not validated, possibly causing SQL injection or XSS. This is related to symfony/http-foundation.
CVSS Score
9.8
EPSS Score
0.003
Published
2019-05-16


Contact Us

Shodan ® - All rights reserved