Описание
Deserialization of Untrusted Data in topthink/framework
The package topthink/framework before version 6.0.12 is vulnerable to Deserialization of Untrusted Data due to insecure unserialize method in the Driver class.
Пакеты
Наименование
topthink/framework
composer
Затронутые версииВерсия исправления
< 6.0.12
6.0.12
Связанные уязвимости
CVSS3: 7.7
nvd
почти 4 года назад
The package topthink/framework before 6.0.12 are vulnerable to Deserialization of Untrusted Data due to insecure unserialize method in the Driver class.