FAIL › dossier
getsymphony
VENDORDossier not yet built — the RAG curator builds one for players with ≥2 failure events. The failure history and sentiment below are live.
FAILURE HISTORY · 1
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2021-10-31 | CVE-2020-25912 | critical | A XML External Entity (XXE) vulnerability was discovered in symphony\lib\toolkit\class.xmlelement.php in Symphony 2.7.10 which can lead to an information disclosure or denial of service (DOS). |
SENTIMENT · TRUSTED SOURCES
synthesissevere-fallout-0.80
CVE-2020-25912 (Symphony) is a critical XXE vulnerability in a widely used CMS, leading to information disclosure and DoS risks, with no evidence of vendor remediation or praise in provided sources.
Neutral reporting of vulnerability
"A XML External Entity (XXE) vulnerability was discovered in symphony\lib\toolkit\class.xmlelement.php in Symphony 2.7.10 which can lead to an information disclosure or denial of service (DOS)."
Neutral database listing
Negative - unrelated breach
"Accenture Confirms Intrusion After Hacker Claims 35GB Data Breach"
Negative - unrelated breach
"Hackers breached DHS information-sharing network, people familiar say"
Negative - unrelated breach
"BREAKING: Apple accuses an OpenAI employee of hacking its systems"
Negative - unrelated breach
"Broadcom Employee Data Leaked After Supply Chain Breach at ADP Partner"