symfony/security-csrf Security Advisories for v2.7.3 (2)
- 
                        CVE-2018-11406: CSRF Token FixationPKSA-894f-kqgr-2n7p CVE-2018-11406 Affected version: >=2.4.0,<2.7.48|>=2.5.0,<2.7.48|>=2.6.0,<2.7.48|>=2.7.0,<2.7.48|>=2.8.0,<2.8.41|>=3.0.0,<3.1.0|>=3.1.0,<3.2.0|>=3.2.0,<3.3.0|>=3.3.0,<3.3.17|>=3.4.0,<3.4.11|>=4.0.0,<4.0.11 Reported by: 
 FriendsOfPHP/security-advisories
- 
                        [MEDIUM] CVE-2017-16653: CSRF protection does not use different tokens for HTTP and HTTPSPKSA-c7kd-tcsk-4236 CVE-2017-16653 GHSA-92x6-h2gr-8gxq Affected version: >=2.7.0,<2.7.38|>=2.8.0,<2.8.31|>=3.0.0,<3.1.0|>=3.1.0,<3.2.0|>=3.2.0,<3.2.14|>=3.3.0,<3.3.13 Reported by: 
 GitHub, FriendsOfPHP/security-advisories