CSRF Protection Bypass in symfony/ux-live-component via Accept Header
Security Advisory
GHSA-8923-fp7h-2f9c
High
Symfony
Affected:
- symfony/ux-live-component >=2.22.0, <2.36.0
- symfony/ux-live-component >=3.0.0, <3.1.0
Fixed in:
- symfony/ux-live-component 2.36.0
- symfony/ux-live-component 3.1.0
Referenced CVEs:
CVE-2026-49215
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.