Back to search
CVE-2024-36611
Published: Nov 29, 2024
Modified: Jan 6, 2025
PUBLISHED
Description
In Symfony v7.07, a security vulnerability was identified in the FormLoginAuthenticator component, where it failed to adequately handle cases where the username or password field of a login request is empty. This flaw could lead to various security risks, including improper authentication logic handling or denial of service. NOTE: the Supplier has concluded that this is a false report.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now