Alexander Makarov
7 exploits
Active since Mar 2017
Yii 2: Local file inclusion via view parameter name collision
CVSS 7.4
Yii Framework < 2.0.11 - Reflected Cross-Site Scripting via Debug Mode Exception Screen
CVSS 6.1
Yii Framework 2.x <2.0.14 - CSRF
CVSS 8.8
Yii Framework 2.x <2.0.14 - Info Disclosure
CVSS 7.5
yii2-authclient < 2.2.15 - Timing Attack via OAuth State and OpenID Connect Nonce Comparison
CVSS 6.1
Yii 2.0.49.3 - Cross-Site Scripting via Stack Trace Argument Truncation
CVSS 4.2
Yii 2 Redis Extension <2.0.20 - Info Disclosure
CVSS 6.5