symfony/mailjet-mailer Security Advisories for v7.4.6 (1)
-
CVE-2026-45754: Mailjet Mailer and LOX24 Notifier Webhook Parsers Never Verify the Configured Secret: Unauthenticated Webhook Event Injection
PKSA-swxr-w76k-fd2b CVE-2026-45754
Affected version: >=6.4.0,<6.4.40|>=7.0.0,<7.1.0|>=7.1.0,<7.2.0|>=7.2.0,<7.3.0|>=7.3.0,<7.4.0|>=7.4.0,<7.4.12|>=8.0.0,<8.0.12
Reported by:
FriendsOfPHP/security-advisories