Skip to content

Commit 067beed

Browse files
authored
Merge pull request #754 from xabbuh/cve-2025-64500
add entries for CVE-2025-64500
2 parents 7159d3f + fb44e72 commit 067beed

File tree

2 files changed

+112
-0
lines changed

2 files changed

+112
-0
lines changed
Lines changed: 56 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,56 @@
1+
title: "CVE-2025-64500: Incorrect parsing of PATH_INFO can lead to limited authorization bypass"
2+
link: https://symfony.com/blog/cve-2025-64500-incorrect-parsing-of-path-info-can-lead-to-limited-authorization-bypass
3+
cve: CVE-2025-64500
4+
branches:
5+
2.x:
6+
time: ~
7+
versions: ['>=2.0.0', '<3.0.0']
8+
3.x:
9+
time: ~
10+
versions: ['>=3.0.0', '<4.0.0']
11+
4.x:
12+
time: ~
13+
versions: ['>=4.0.0', '<5.0.0']
14+
5.0.x:
15+
time: ~
16+
versions: ['>=5.0.0', '<5.1.0']
17+
5.1.x:
18+
time: ~
19+
versions: ['>=5.1.0', '<5.2.0']
20+
5.2.x:
21+
time: ~
22+
versions: ['>=5.2.0', '<5.3.0']
23+
5.3.x:
24+
time: ~
25+
versions: ['>=5.3.0', '<5.4.0']
26+
5.4.x:
27+
time: 2025-11-12 11:09:14
28+
versions: ['>=5.4.0', '<5.4.50']
29+
6.0.x:
30+
time: ~
31+
versions: ['>=6.0.0', '<6.1.0']
32+
6.1.x:
33+
time: ~
34+
versions: ['>=6.1.0', '<6.2.0']
35+
6.2.x:
36+
time: ~
37+
versions: ['>=6.2.0', '<6.3.0']
38+
6.3.x:
39+
time: ~
40+
versions: ['>=6.3.0', '<6.4.0']
41+
6.4.x:
42+
time: 2025-11-12 11:09:14
43+
versions: ['>=6.4.0', '<6.4.29']
44+
7.0.x:
45+
time: ~
46+
versions: ['>=7.0.0', '<7.1.0']
47+
7.1.x:
48+
time: ~
49+
versions: ['>=7.1.0', '<7.2.0']
50+
7.2.x:
51+
time: ~
52+
versions: ['>=7.2.0', '<7.3.0']
53+
7.3.x:
54+
time: 2025-11-12 11:09:14
55+
versions: ['>=7.3.0', '<7.3.7']
56+
reference: composer://symfony/http-foundation
Lines changed: 56 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,56 @@
1+
title: "CVE-2025-64500: Incorrect parsing of PATH_INFO can lead to limited authorization bypass"
2+
link: https://symfony.com/blog/cve-2025-64500-incorrect-parsing-of-path-info-can-lead-to-limited-authorization-bypass
3+
cve: CVE-2025-64500
4+
branches:
5+
2.x:
6+
time: ~
7+
versions: ['>=2.0.0', '<3.0.0']
8+
3.x:
9+
time: ~
10+
versions: ['>=3.0.0', '<4.0.0']
11+
4.x:
12+
time: ~
13+
versions: ['>=4.0.0', '<5.0.0']
14+
5.0.x:
15+
time: ~
16+
versions: ['>=5.0.0', '<5.1.0']
17+
5.1.x:
18+
time: ~
19+
versions: ['>=5.1.0', '<5.2.0']
20+
5.2.x:
21+
time: ~
22+
versions: ['>=5.2.0', '<5.3.0']
23+
5.3.x:
24+
time: ~
25+
versions: ['>=5.3.0', '<5.4.0']
26+
5.4.x:
27+
time: 2025-11-12 11:09:14
28+
versions: ['>=5.4.0', '<5.4.50']
29+
6.0.x:
30+
time: ~
31+
versions: ['>=6.0.0', '<6.1.0']
32+
6.1.x:
33+
time: ~
34+
versions: ['>=6.1.0', '<6.2.0']
35+
6.2.x:
36+
time: ~
37+
versions: ['>=6.2.0', '<6.3.0']
38+
6.3.x:
39+
time: ~
40+
versions: ['>=6.3.0', '<6.4.0']
41+
6.4.x:
42+
time: 2025-11-12 11:09:14
43+
versions: ['>=6.4.0', '<6.4.29']
44+
7.0.x:
45+
time: ~
46+
versions: ['>=7.0.0', '<7.1.0']
47+
7.1.x:
48+
time: ~
49+
versions: ['>=7.1.0', '<7.2.0']
50+
7.2.x:
51+
time: ~
52+
versions: ['>=7.2.0', '<7.3.0']
53+
7.3.x:
54+
time: 2025-11-12 11:09:14
55+
versions: ['>=7.3.0', '<7.3.7']
56+
reference: composer://symfony/symfony

0 commit comments

Comments
 (0)