UbuntuUpdates.org

Package "php-twig-inky-extra"

Name: php-twig-inky-extra

Description:

A Twig extension for the inky email templating engine

Latest version: 3.8.0-3ubuntu1
Release: oracular (24.10)
Level: security
Repository: universe
Head package: php-twig
Homepage: https://twig.symfony.com/inky

Links


Download "php-twig-inky-extra"


Other versions of "php-twig-inky-extra" in Oracular

Repository Area Version
base universe 3.8.0-3
updates universe 3.8.0-3ubuntu1

Changelog

Version: 3.8.0-3ubuntu1 2025-05-22 21:07:50 UTC

  php-twig (3.8.0-3ubuntu1) oracular-security; urgency=medium

  * SECURITY UPDATE: sandbox restriction bypass
    - 0003-Fix-a-security-issue-when-an-included-sandboxed-temp.patch:
      prevent bypass
    - CVE-2024-45411

 -- Julia Sarris <email address hidden> Wed, 21 May 2025 17:08:32 +0200

CVE-2024-45411 Twig is a template language for PHP. Under some circumstances, the sandbox security checks are not run which allows user-contributed templates to byp



About   -   Send Feedback to @ubuntu_updates