Security Advisory
CVE-2026-48761
6.1
MEDIUM
Vulnerability Description
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0 until 6.4.41, 7.4.13, and 8.0.13, UrlAttributeSanitizer::getSupportedAttributes() omitted URL-bearing attributes on
Published Date
July 14, 2026
Official Source
NIST NVD Advisory