It was discovered that Twig did not correctly handle securing user input. An attacker could possibly use this issue to cause Twig to expose sensitive information if it opened a specially crafted file. (CVE-2024-45411)
{ "availability": "No subscription required", "binaries": [ { "binary_name": "php-twig", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-cache-extra", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-cssinliner-extra", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-doc", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-extra-bundle", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-html-extra", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-inky-extra", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-intl-extra", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-markdown-extra", "binary_version": "3.8.0-3ubuntu1" }, { "binary_name": "php-twig-string-extra", "binary_version": "3.8.0-3ubuntu1" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "php-twig", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-cache-extra", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-cssinliner-extra", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-doc", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-extra-bundle", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-html-extra", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-inky-extra", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-intl-extra", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-markdown-extra", "binary_version": "3.8.0-2ubuntu1" }, { "binary_name": "php-twig-string-extra", "binary_version": "3.8.0-2ubuntu1" } ] }