Symfony 2.6.12 has just been released. Here is a list of the most important changes:
- security #16631 `CVE-2015-8124 <http://symfony.com/blog/cve-2015-8124-session-fixation-in-the-remember-me-login-feature>`_: Session Fixation in the "Remember Me" Login Feature (xabbuh)
- security #16630 `CVE-2015-8125 <http://symfony.com/blog/cve-2015-8125-potential-remote-timing-attack-vulnerability-in-security-remember-me-service>`_: Potential Remote Timing Attack Vulnerability in Security Remember-Me Service (xabbuh)
Want to upgrade to this new release? Fortunately, because Symfony protects backwards-compatibility very closely, this should be quite easy. Read our upgrade documentation to learn more.
Want to check the integrity of this new version? Read my blog post about signing releases .
Want to be notified whenever a new Symfony release is published? Or when a version is not maintained anymore? Or only when a security issue is fixed? Consider subscribing to the Symfony Roadmap Notifications.