Impact
Affected versions of yiisoft/yii
are vulnerable to Remote Code Execution (RCE) if the application calls unserialize()
on arbitrary user input.
Patches
Upgrade yiisoft/yii
to version 1.1.29 or higher.
For more information
See the following links for more details:
If you have any questions or comments about this advisory, contact us through security form.
Impact
Affected versions of
yiisoft/yii
are vulnerable to Remote Code Execution (RCE) if the application callsunserialize()
on arbitrary user input.Patches
Upgrade
yiisoft/yii
to version 1.1.29 or higher.For more information
See the following links for more details:
If you have any questions or comments about this advisory, contact us through security form.