Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Johannes Schmitt

#36455of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2014-2471
7.5
2014-06-02
Symfony · Symfony · CVE-2013-1397
**Name of the Vulnerable Software and Affected Versions** Symfony versions 2.0.x through 2.0.21 Symfony versions 2.1.x through 2.1.6 **Description** The issue allows remote attackers to execute arbitrary PHP code via a serialized PHP object to the (1) Yaml::parse or (2) YamlParser::parse function. **Recommendations** For Symfony versions 2.0.x through 2.0.21, update to version 2.0.22 or later. For Symfony versions 2.1.x through 2.1.6, update to version 2.1.7 or later.