How does symfony store the session in your case, are you using the php
session or something else?

    gabriel

On Jun 22, 9:19 am, ashton honnecke <ahonne...@gmail.com> wrote:
> I am able to save information to the session manually:
>       print_r($_SESSION['something']);
>       $_SESSION['something'] = array('7');
>
> That will save and then print Array ( [0] => 7 ) in a unprotected action.

-- 
If you want to report a vulnerability issue on symfony, please send it to 
security at symfony-project.com

You received this message because you are subscribed to the Google
Groups "symfony users" group.
To post to this group, send email to symfony-users@googlegroups.com
To unsubscribe from this group, send email to
symfony-users+unsubscr...@googlegroups.com
For more options, visit this group at
http://groups.google.com/group/symfony-users?hl=en

Reply via email to