Vulnerabilities
Vulnerable Software
Yiiframework:  >> Gii  Security Vulnerabilities
Yii Yii2 Gii before 2.2.2 allows remote attackers to execute arbitrary code via the Generator.php messageCategory field. The attacker can embed arbitrary PHP code into the model file.
CVSS Score
8.8
EPSS Score
0.013
Published
2023-01-21
Yii Yii2 Gii through 2.2.4 allows stored XSS by injecting a payload into any field.
CVSS Score
5.4
EPSS Score
0.001
Published
2022-12-09


Contact Us

Shodan ® - All rights reserved