Oval Definition:oval:com.ubuntu.disco:def:2019109130000000
Revision Date:2019-05-16Version:1
Title:CVE-2019-10913 on Ubuntu 19.04 (disco) - medium.
Description:In Symfony before 2.7.51, 2.8.x before 2.8.50, 3.x before 3.4.26, 4.x before 4.1.12, and 4.2.x before 4.2.7, HTTP Methods provided as verbs or using the override header may be treated as trusted input, but they are not validated, possibly causing SQL injection or XSS. This is related to symfony/http-foundation.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-10913
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND symfony package in disco is affected and needs fixing.
  • BACK