Skip to content

Commit

Permalink
Merge pull request #735 from jderusse/security-advisories-2025-02
Browse files Browse the repository at this point in the history
Add advisories for Twig Security Release 2024-02
  • Loading branch information
fabpot authored Nov 6, 2024
2 parents c0c781f + f876177 commit 89473cc
Show file tree
Hide file tree
Showing 2 changed files with 34 additions and 0 deletions.
17 changes: 17 additions & 0 deletions twig/twig/CVE-2024-51754.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
title: Unguarded calls to __toString() when nesting an object into an array
link: https://symfony.com/blog/unguarded-calls-to-__tostring-when-nesting-an-object-into-an-array
cve: CVE-2024-51754
branches:
1.x:
time: ~
versions: ['>=1.0.0', '<2.0.0']
2.x:
time: ~
versions: ['>=2.0.0', '<3.0.0']
'3.11':
time: 2024-11-06 08:00:00
versions: ['>=3.0.0', '<3.11.2']
3.x:
time: 2024-11-06 08:00:00
versions: ['>=3.12.0', '<3.14.1']
reference: composer://twig/twig
17 changes: 17 additions & 0 deletions twig/twig/CVE-2024-51755.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
title: Unguarded calls to __isset() and to array-accesses when the sandbox is enabled
link: https://symfony.com/blog/unguarded-calls-to-__isset-and-to-array-accesses-when-the-sandbox-is-enabled
cve: CVE-2024-51755
branches:
1.x:
time: ~
versions: ['>=1.0.0', '<2.0.0']
2.x:
time: ~
versions: ['>=2.0.0', '<3.0.0']
'3.11':
time: 2024-11-06 08:00:00
versions: ['>=3.0.0', '<3.11.2']
3.x:
time: 2024-11-06 08:00:00
versions: ['>=3.12.0', '<3.14.1']
reference: composer://twig/twig

0 comments on commit 89473cc

Please sign in to comment.