Miggo Logo

GHSA-98j6-67v3-mw34: Auth0 Symfony SDK Deserialization of Untrusted Data vulnerability

N/A

CVSS Score

Basic Information

CVE ID
-
EPSS Score
-
Published
6/6/2025
Updated
6/6/2025
KEV Status
No
Technology
TechnologyPHP

Technical Details

CVSS Vector
-
Package NameEcosystemVulnerable VersionsFirst Patched Version
auth0/symfonycomposer>= 5.0.0-BETA0, <= 5.0.05.1.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

**Ov*rvi*w** T** *ut** Sym*ony S*K *ont*ins * *riti**l vuln*r**ility *u* to ins**ur* **s*ri*liz*tion o* *ooki* **t*. I* *xploit**, sin** S*Ks pro**ss *ooki* *ont*nt wit*out prior *ut**nti**tion, * t*r**t **tor *oul* s*n* * sp**i*lly *r**t** *ooki* *o

Reasoning

No *n*lysis *v*il**l*