Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[FP]: Symfony Polyfill is matched as Symfony framework #7542

Closed
sigv opened this issue Mar 21, 2025 · 0 comments · Fixed by #7543
Closed

[FP]: Symfony Polyfill is matched as Symfony framework #7542

sigv opened this issue Mar 21, 2025 · 0 comments · Fixed by #7543

Comments

@sigv
Copy link
Contributor

sigv commented Mar 21, 2025

Package URl

pkg:composer/symfony/polyfill-ctype@1.31.0

CPE

cpe:2.3:a:sensiolabs:symfony:1.31.0:::::::*

CVE

CVE-2022-23601

ODC Integration

{"label" => "CLI"}

ODC Version

12.1.0

Description

Since package name matching change (#7295), this is being matched lossy as Symphony. However, Symfony Polyfill is not Symfony framework. It is an independent project, with an independent versioning scheme.

@sigv sigv added the FP Report label Mar 21, 2025
@sigv sigv changed the title [FP]: [FP]: Symfony Polyfill is matched as Symfony framework Mar 21, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant