Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

fabpot
Copy link
Member

@fabpot fabpot commented May 25, 2018

Changelog (since v3.3.16...v3.3.17)

  • security #cve-2018-11407 [Ldap] cast to string when checking empty passwords
  • security #cve-2018-11408 [SecurityBundle] Fail if security.http_utils cannot be configured
  • security #cve-2018-11406 clear CSRF tokens when the user is logged out
  • security #cve-2018-11385 migrating session for UsernamePasswordJsonAuthenticationListener
  • security #cve-2018-11386 [HttpFoundation] Break infinite loop in PdoSessionHandler when MySQL is in loose mode

@fabpot fabpot merged commit 4639525 into symfony:3.3 May 25, 2018
@fabpot fabpot deleted the release-3.3.17 branch May 25, 2018 12:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants