Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36215
HistoryJun 30, 2022 - 9:55 a.m.

Untrusted Object Deserialisation

2022-06-3009:55:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.002 Low

EPSS

Percentile

58.4%

topthink/think is vulnerable to untrusted object deserialisation. The vulnerability exists in the AbstractCache function in CacheStore.php which allows an attacker to inject and execute arbitrary code via a crafted payload.

0.002 Low

EPSS

Percentile

58.4%

Related for VERACODE:36215