Yii PHP Framework Version 2 - Development Package
95%
Total Score
85
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-2689 yiisoft/yii2-dev is vulnerable to Improper Input Validation in versions 0.0.0 - 2.0.45. | 0.0.0 - 2.0.45 | Medium |
CVE-2018-7269 yiisoft/yii2-dev is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 0.0.0 - 2.0.12.1, 2.0.13 - 2.0.13.2 and 2.0.14 - 2.0.15. | 0.0.0 - 2.0.15 | Critical |
CVE-2018-8074 yiisoft/yii2-dev is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 2.0.0 - 2.0.15. | 2.0.0 - 2.0.15 | High |
CVE-2017-11516 yiisoft/yii2-dev is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 2.0.12 - 2.0.12. | 2.0.12 - 2.0.12 | Medium |
CVE-2021-3689 yiisoft/yii2-dev is vulnerable to Use of Insufficiently Random Values in versions 0.0.0 - 2.0.43. | 0.0.0 - 2.0.43 | High |
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ~1.0.2 | — | — |
cebe/markdown Version ~1.0.0 | ~1.1.0 | — | — |
psr/http-message Version ~1.0.0 | — | — |
psr/simple-cache Version ~1.0.0 | — | — |
yiisoft/yii2-composer Version ~2.0.4 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant