It was discovered that Twig did not correctly handle securing user input. An attacker could possibly use this issue to cause Twig to expose sensitive information if it opened a specially crafted file. (CVE-2024-45411)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-cache-extra" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-cssinliner-extra" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-doc" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-extra-bundle" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-html-extra" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-inky-extra" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-intl-extra" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-markdown-extra" }, { "binary_version": "3.8.0-3ubuntu1", "binary_name": "php-twig-string-extra" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-cache-extra" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-cssinliner-extra" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-doc" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-extra-bundle" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-html-extra" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-inky-extra" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-intl-extra" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-markdown-extra" }, { "binary_version": "3.8.0-2ubuntu1", "binary_name": "php-twig-string-extra" } ] }