twig/twig vulnerabilities

Twig, the flexible, fast, and secure template language for PHP

Latest version: v3.0.1

Continuously find & fix vulnerabilities like these in your dependencies. Test and protect your applications

Direct Vulnerabilities

Known vulnerabilities in the twig/twig package. This does not include vulnerabilities belonging to this package’s dependencies.

Vulnerability Vulnerable versions Snyk patch Published
  • M
Access Restriction Bypass
<1.20.0 Not available 20 Nov, 2019
  • M
Information Exposure
>=1.0.0, <1.38.0,>=2.0.0, <2.7.0 Not available 12 Mar, 2019
  • H
Server Side Template Injection (SSTI)
<2.4.4 Not available 23 Jul, 2018
  • H
Arbitrary Code Execution
<1.20.0 Not available 12 Aug, 2015
  • L
Arbitrary Template Inclusion
>=1.0.0, <1.12.3 Not available 08 Apr, 2013