https://security-tracker.debian.org/tracker/source-package/php-twig
https://security-tracker.debian.org/tracker/CVE-2026-24425
https://security-tracker.debian.org/tracker/CVE-2026-46627
https://security-tracker.debian.org/tracker/CVE-2026-46628
https://security-tracker.debian.org/tracker/CVE-2026-46629
https://security-tracker.debian.org/tracker/CVE-2026-46633
https://security-tracker.debian.org/tracker/CVE-2026-46634
https://security-tracker.debian.org/tracker/CVE-2026-46635
https://security-tracker.debian.org/tracker/CVE-2026-46636
https://security-tracker.debian.org/tracker/CVE-2026-46637
https://security-tracker.debian.org/tracker/CVE-2026-46638
https://security-tracker.debian.org/tracker/CVE-2026-46640
https://security-tracker.debian.org/tracker/CVE-2026-47730
https://security-tracker.debian.org/tracker/CVE-2026-47732
Severity: Critical
ID: 318004
File Name: debian_DSA-6311.nasl
Version: 1.1
Type: Local
Agent: unix
Family: Debian Local Security Checks
Published: 5/30/2026
Updated: 5/30/2026
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Nessus Agent, Nessus
Risk Factor: High
Score: 7.4
Risk Factor: High
Base Score: 9
Temporal Score: 6.7
Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C
CVSS Score Source: CVE-2026-24425
Risk Factor: High
Base Score: 8.8
Temporal Score: 7.7
Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
Risk Factor: Critical
Base Score: 9.3
Threat Score: 8.1
Threat Vector: CVSS:4.0/E:U
Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score Source: CVE-2026-46633
CPE: p-cpe:/a:debian:debian_linux:php-twig-cssinliner-extra, p-cpe:/a:debian:debian_linux:php-twig, p-cpe:/a:debian:debian_linux:php-twig-string-extra, p-cpe:/a:debian:debian_linux:php-twig-markdown-extra, p-cpe:/a:debian:debian_linux:php-twig-intl-extra, p-cpe:/a:debian:debian_linux:php-twig-cache-extra, p-cpe:/a:debian:debian_linux:php-twig-inky-extra, p-cpe:/a:debian:debian_linux:php-twig-doc, p-cpe:/a:debian:debian_linux:php-twig-html-extra, p-cpe:/a:debian:debian_linux:php-twig-extra-bundle, cpe:/o:debian:debian_linux:13.0
Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l
Exploit Ease: No known exploits are available
Patch Publication Date: 5/29/2026
Vulnerability Publication Date: 5/20/2026
CVE: CVE-2026-24425, CVE-2026-46627, CVE-2026-46628, CVE-2026-46629, CVE-2026-46633, CVE-2026-46634, CVE-2026-46635, CVE-2026-46636, CVE-2026-46637, CVE-2026-46638, CVE-2026-46640, CVE-2026-47730, CVE-2026-47732, CVE-2026-48805