Security Advisory

CVE-2019-18887

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-21 22:18:04
Last updated 2024-08-05 02:02:39
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7. The UriSigner was subject to timing attacks. This is related to symfony/http-kernel.