symfony/ux-autocomplete Security Advisories for v2.14.2 (2)
-
symfony/ux-autocomplete Information exposure via unescaped LIKE wildcards in EntitySearchUtil
PKSA-msh7-gxqk-k56q CVE-2026-49211
Affected version: >=2.2.0,<2.36.0|>=3.0.0,<3.1.0
Reported by:
FriendsOfPHP/security-advisories -
symfony/ux-autocomplete XSS via unescaped AJAX response data
PKSA-q7f1-2s55-5c1z CVE-2026-49216
Affected version: >=2.2.0,<2.36.0|>=3.0.0,<3.1.0
Reported by:
FriendsOfPHP/security-advisories