-
-
Notifications
You must be signed in to change notification settings - Fork 5.2k
Closed
Labels
Securitygood first issueIdeal for your first contribution! (some Symfony experience may be required)Ideal for your first contribution! (some Symfony experience may be required)hasPRA Pull Request has already been submitted for this issue.A Pull Request has already been submitted for this issue.
Description
We should warn in the docs that dumping $_SERVER
, $_ENV
, or outputting phpinfo()
would disclose contents of environmental variables which, as of Symfony 4 best practices, would include database credentials.
Originally commented upon: https://twitter.com/mdekrijger/status/958688583858212865
Metadata
Metadata
Assignees
Labels
Securitygood first issueIdeal for your first contribution! (some Symfony experience may be required)Ideal for your first contribution! (some Symfony experience may be required)hasPRA Pull Request has already been submitted for this issue.A Pull Request has already been submitted for this issue.