Lucene search

K
osvGoogleOSV:CVE-2019-9942
HistoryMar 23, 2019 - 3:29 p.m.

CVE-2019-9942

2019-03-2315:29:00
Google
osv.dev
6

AI Score

3.9

Confidence

High

EPSS

0.002

Percentile

65.2%

A sandbox information disclosure exists in Twig before 1.38.0 and 2.x before 2.7.0 because, under some circumstances, it is possible to call the __toString() method on an object even if not allowed by the security policy in place.

AI Score

3.9

Confidence

High

EPSS

0.002

Percentile

65.2%