Releases: symfony/security-http
Releases · symfony/security-http
v6.4.0
Changelog (v6.4.0-RC2...v6.4.0)
- no significant changes
v7.0.0-RC2
Changelog (v7.0.0-RC1...v7.0.0-RC2)
- bug symfony/symfony#52724 [Security] make secret required for DefaultLoginRateLimiter (@RobertMe)
v6.4.0-RC2
Changelog (v6.4.0-RC1...v6.4.0-RC2)
- no significant changes
v7.0.0-RC1
Changelog (v7.0.0-BETA3...v7.0.0-RC1)
- no significant changes
v6.4.0-RC1
Changelog (v6.4.0-BETA3...v6.4.0-RC1)
- no significant changes
v7.0.0-BETA3
Changelog (v7.0.0-BETA2...v7.0.0-BETA3)
- security symfony/symfony#cve-2023-46733 [Security] Fix possible session fixation when only the token changes (@RobertMe)
- bug symfony/symfony#52469 Check whether secrets are empty and mark them all as sensitive (@nicolas-grekas)
v6.4.0-BETA3
Changelog (v6.4.0-BETA2...v6.4.0-BETA3)
- security symfony/symfony#cve-2023-46733 [Security] Fix possible session fixation when only the token changes (@RobertMe)
- bug symfony/symfony#52469 Check whether secrets are empty and mark them all as sensitive (@nicolas-grekas)
v6.3.8
Changelog (v6.3.7...v6.3.8)
- security symfony/symfony#cve-2023-46733 [Security] Fix possible session fixation when only the token changes (@RobertMe)
v5.4.31
Changelog (v5.4.30...v5.4.31)
- security symfony/symfony#cve-2023-46733 [Security] Fix possible session fixation when only the token changes (@RobertMe)
v5.4.30
Changelog (v5.4.29...v5.4.30)
- no significant changes