Information on source package twig

Available versions

ReleaseVersion
jessie1.16.2-1+deb8u1
stretch1.24.0-2+deb9u1
buster2.6.2-2+deb10u1

Open issues

BugjessiestretchbusterDescription
CVE-2024-51755vulnerablevulnerablevulnerableTwig is a template language for PHP. In a sandbox, an attacker can acc ...
CVE-2024-51754vulnerablevulnerablevulnerableTwig is a template language for PHP. In a sandbox, an attacker can cal ...
CVE-2024-45411vulnerablevulnerablevulnerableTwig is a template language for PHP. Under some circumstances, the san ...
CVE-2022-39261vulnerablevulnerablefixedTwig is a template language for PHP. Versions 1.x prior to 1.44.7, 2.x ...
CVE-2022-23614vulnerablefixedfixedTwig is an open source template language for PHP. When in a sandbox mo ...
CVE-2019-9942vulnerable (no DSA)fixedfixedA sandbox information disclosure exists in Twig before 1.38.0 and 2.x ...

Open unimportant issues

BugjessiestretchbusterDescription
CVE-2018-13818vulnerablevulnerablefixedTwig before 2.4.4 allows Server-Side Template Injection (SSTI) via the ...

Resolved issues

BugDescription
CVE-2015-7809The displayBlock function Template.php in Sensio Labs Twig before 1.20 ...

Security announcements

DSA / DLADescription
DLA-3147-1twig - security update
DSA-4419-1twig - security update
DSA-3343-1twig - security update

Search for package or bug name: Reporting problems