CVE-2026-45072 | Symfony WebProfiler fileExcerpt cross site scripting (Nessus ID 318121)
A vulnerability was found in Symfony. It has been declared as problematic. The impacted element is the function CodeExtension::fileExcerpt of the component WebProfiler. Such manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-45072. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.