Lucene search

K
osvGoogleOSV:GHSA-4XH9-5VH8-3P58
HistoryMay 17, 2022 - 2:46 a.m.

Yii Framework Reflected XSS

2022-05-1702:46:54
Google
osv.dev
9

0.002 Low

EPSS

Percentile

59.2%

Reflected Cross-site scripting (XSS) vulnerability in Yii Framework before 2.0.11, when development mode is used, allows remote attackers to inject arbitrary web script or HTML via crafted request data that is mishandled on the debug-mode exception screen.

0.002 Low

EPSS

Percentile

59.2%

Related for OSV:GHSA-4XH9-5VH8-3P58