Junglewise Threat Intelligence

CVE-2017-6920: Drupal PECL YAML parser unsafe object handling

CVE-2017-6920 · Severity: low · CVSS 3 · Published 2022-05-14

Technologies: drupal/drupal (Packagist), drupal/core (Packagist). Vendors: Packagist.

Executive brief

Drupal PECL YAML parser unsafe object handling

Affected products

  • Packagist drupal/drupal
  • Packagist drupal/core

Related threats