Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6789
HistoryJun 14, 2018 - 2:10 a.m.

Denial Of Service (DoS)

2018-06-1402:10:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

EPSS

0.006

Percentile

77.7%

symfony/symfony and symfony/http-foundation are vulnerable to denial of service (DoS). It can happen because PDOSessionHandler class does not prevent storing sessions on a PDO connection. Therefore, with some configurations, it allows the attacker to send a malicious payload causing DoS.