MEDIUM
Reflected Cross-site scripting (XSS) vulnerability in the web profiler in SensioLabs Symfony 3.3.6 allows remote attackers to inject arbitrary web script or HTML via the "file" parameter, aka an _profiler/open?file= URI
Published Jun 13, 2018
6.1
MEDIUMCVSS 3.0
EPSS 1.31%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.