Remote Code Injection Vulnerability in Symfony Cache Adapter
CVE-2019-18889
9.8CRITICAL
What is CVE-2019-18889?
A vulnerability exists in Symfony versions from 3.4.0 to 3.4.34, 4.2.0 to 4.2.11, and 4.3.0 to 4.3.7 where the serialization of specific cache adapter interfaces could lead to remote code injection. This issue is closely linked to the symfony/cache component and may expose systems to unauthorized access or malicious code execution. Users are advised to update to the latest version to mitigate this risk.