Lucene search

K
osvGoogleOSV:GHSA-4HX3-M8W5-G5QH
HistoryMay 14, 2022 - 3:31 a.m.

yii2-redis Potential Remote code execution

2022-05-1403:31:31
Google
osv.dev
1

7.8 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.0%

Potential remote code execution in LUA context of the redis server via methods yii\redis\ActiveRecord::findOne() and yii\redis\ActiveRecord::findAll() in yiisoft/yii2-redis. Attackers could probably manipulate data on the redis server.

7.8 High

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.0%

Related for OSV:GHSA-4HX3-M8W5-G5QH