VYPR

Fosuserbundle

by Friends Of Symfony Project

CVEs (1)

  • CVE-2013-5750Sep 25, 2013
    risk 0.00cvss epss 0.00

    The login form in the FriendsOfSymfony FOSUserBundle bundle before 1.3.3 for Symfony allows remote attackers to cause a denial of service (CPU consumption) via a long password that triggers an expensive hash computation, as demonstrated by a PBKDF2 computation.