Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
Affects symfony/runtime | Versions >=5.4.46, <5.4.52>=6.4.14, <6.4.40>=7.1.7, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects symfony/dom-crawler | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects symfony/security-http | Versions >=6.3.0-BETA1, <6.4.40>=7.4.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • H
User ImpersonationCVE-2026-45074
Affects symfony/security-http | Versions >=7.1.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • M
User ImpersonationCVE-2026-45063
Affects symfony/security-http | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects laravel-lang/actions | Versions >=0.0.0
Affects laravel-lang/attributes | Versions >=0.0.0
Affects laravel-lang/http-statuses | Versions >=0.0.0
Affects laravel-lang/lang | Versions >=0.0.0
Affects symfony/symfony | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.4.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects symfony/routing | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.4.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects symfony/yaml | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects symfony/yaml | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • H
Affects symfony/yaml | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • M
CRLF InjectionCVE-2026-45067
Affects symfony/mime | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • M
CRLF InjectionCVE-2026-45070
Affects symfony/mime | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects symfony/symfony | Versions >=6.4.24, <6.4.40>=7.2.9, <7.4.12>=8.0.0, <8.0.12
Affects symfony/twig-bridge | Versions >=6.4.24, <6.4.40
Affects symfony/web-profiler-bundle | Versions >=7.2.9, <7.4.12>=8.0.0, <8.0.12
  • M
SQL InjectionCVE-2026-45073
Affects symfony/symfony | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • M
SQL InjectionCVE-2026-45073
Affects symfony/cache | Versions <5.4.52>=6.0.0-BETA1, <6.4.40>=7.0.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • H
Affects symfony/symfony | Versions >=7.4.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • H
Affects symfony/security-http | Versions >=7.4.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
  • H
Affects symfony/http-kernel | Versions >=7.4.0-BETA1, <7.4.12>=8.0.0-BETA1, <8.0.12
Affects twig/twig | Versions <3.26.0
  • H
Affects twig/twig | Versions >=3.9.0, <3.26.0
  • M
Affects twig/twig | Versions <3.26.0
  • M
Affects twig/twig | Versions >=3.24.0, <3.26.0
  • C
Affects twig/twig | Versions >=3.15.0, <3.26.0
  • C
Affects twig/twig | Versions <3.26.0