PKSA-nqj4-v43p-2gxc Security Advisory
-
[MEDIUM] CVE-2018-14773: Remove support for legacy and risky HTTP headers
PKSA-nqj4-v43p-2gxc CVE-2018-14773 GHSA-8wgj-6wx8-h5hq
Affected package: symfony/http-foundation
Affected version: >=2.0.0,<2.1.0|>=2.1.0,<2.2.0|>=2.2.0,<2.3.0|>=2.3.0,<2.4.0|>=2.4.0,<2.5.0|>=2.5.0,<2.6.0|>=2.6.0,<2.7.0|>=2.7.0,<2.7.49|>=2.8.0,<2.8.44|>=3.0.0,<3.1.0|>=3.1.0,<3.2.0|>=3.2.0,<3.3.0|>=3.3.0,<3.3.18|>=3.4.0,<3.4.14|>=4.0.0,<4.0.14|>=4.1.0,<4.1.3
Reported by:
GitHub, FriendsOfPHP/security-advisories