← Back

Symfony

symfony

Vendor: Sensiolabs • 61 CVEs

CVEs (61)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Sensiolabs
1Symfony
Apr 29, 2026
Jun 7, 2012
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Session fixation vulnerability in lib/user/sfBasicSecurityUser.class.php in SensioLabs Symfony before 1.4.18 allows remote attackers to hijack web sessions via vectors related to the regenerate method and unspecified "da...Show more
Session fixation vulnerability in lib/user/sfBasicSecurityUser.class.php in SensioLabs Symfony before 1.4.18 allows remote attackers to hijack web sessions via vectors related to the regenerate method and unspecified "database backed session classes."Show less