Skip to content

Symfony Blog

All about Symfony releases, new Symfony features, and other important announcements

CVE-2018-11407 fixes an unauthorized access on a misconfigured LDAP server when using an empty password.
May 25, 2018 #Security Advisories
CVE-2018-11385 fixes a session fixation issue when using Guard authentication.
May 25, 2018 #Security Advisories
CVE-2018-11386 fixes a possible denial of service when using PDOSessionHandler.
May 25, 2018 #Security Advisories
CVE-2018-11408 fixes an open redirect vulnerability on DefaultAuthenticationSuccessHandler and DefaultAuthenticationFailureHandler.
May 25, 2018 #Security Advisories
CVE-2018-11406 fixes a possible CSRF token fixation.
May 25, 2018 #Security Advisories
May 25, 2018 #Releases
May 25, 2018 #Releases
May 25, 2018 #Releases
May 25, 2018 #Releases
May 25, 2018 #Releases