Vulnerabilities (CVE)

Filtered by vendor Getsymphony Subscribe
Filtered by product Symphony
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-25912 1 Getsymphony 1 Symphony 2021-11-02 6.4 MEDIUM 9.1 CRITICAL
A XML External Entity (XXE) vulnerability was discovered in symphony\lib\toolkit\class.xmlelement.php in Symphony 2.7.10 which can lead to an information disclosure or denial of service (DOS).