diff --git a/twig/twig/CVE-2025-24374.yaml b/twig/twig/CVE-2025-24374.yaml new file mode 100644 index 000000000..9f9205acd --- /dev/null +++ b/twig/twig/CVE-2025-24374.yaml @@ -0,0 +1,8 @@ +title: Missing output escaping for the null coalesce operator +link: https://symfony.com/blog/twig-cve-2025-24374-missing-output-escaping-for-the-null-coalesce-operator +cve: CVE-2025-24374 +branches: + 3.x: + time: 2025-01-29 06:52:00 + versions: ['>=3.16.0', '<3.19.0'] +reference: composer://twig/twig