symfony/ux-twig-component
Twig components for Symfony
Activity
- Latest release
- 4d ago
- Total releases
- 55
- Cadence
- ~15 days
- Last 12 months
- 9
Reach
- Stars
- 220
Details
- License
- MIT
- First release
- Dec 03, 2021
| Version | Released | |
|---|---|---|
v3.4.0
minor
|
v3.4.0
minor
Dependencies (5)
Changelog
Compare changes
|
|
v3.3.0
minor
| ||
v3.2.0
minor
| ||
v3.1.0
minor
| ||
v3.0.0
major
| ||
v2.36.0
minor
| ||
v2.34.0
minor
| ||
v2.32.0
minor
| ||
v2.31.0
minor
| ||
v2.30.0
minor
| ||
v2.29.2
patch
| ||
v2.29.0
minor
| ||
v2.28.2
patch
| ||
v2.28.0
minor
|
v2.28.0
minor
Changelog
Compare changes
|
|
v2.27.0
minor
| ||
v2.26.0
minor
| ||
v2.25.2
patch
| ||
v2.25.1
patch
| ||
v2.25.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.24.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.23.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.22.1
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.22.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.9.2
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.21.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.20.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.19.2
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.19.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.18.1
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.18.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.17.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.16.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.15.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.14.2
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.14.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.13.3
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.13.1
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.13.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.12.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.11.2
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.11.1
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.11.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.10.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.9.1
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.9.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.8.1
patch
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.8.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.7.1
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.6.1
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev | ||
v2.5.0
minor
1 CVE
CVE-2025-47946
GHSA-5j3w-5pcr-f8hg
May 19, 2025
Symfony UX allows unsanitized HTML attribute injection via ComponentAttributes
6.1
/ 10
Medium
Network
Low
None
Required
Changed
Low
Low
None
ImpactRendering PatchesThe issue is fixed in version WorkaroundsUntil you can upgrade, avoid rendering ReferencesGitHub repository: symfony/ux Affected versions
v2.0.0
v2.0.1
v2.1.0
v2.1.1
v2.10.0
v2.11.0
v2.11.1
v2.11.2
v2.12.0
v2.13.0
v2.13.1
v2.13.3
+ 29 more Show less
v2.14.0
v2.14.2
v2.15.0
v2.16.0
v2.17.0
v2.18.0
v2.18.1
v2.19.0
v2.19.2
v2.2.0
v2.20.0
v2.21.0
v2.22.0
v2.22.1
v2.23.0
v2.24.0
v2.25.0
v2.3.0
v2.4.0
v2.5.0
v2.6.0
v2.6.1
v2.7.0
v2.7.1
v2.8.0
v2.8.1
v2.9.0
v2.9.1
v2.9.2
Fixed in
2.25.1
References
Updated Aug 29, 2025 · Source: OSV.dev |