Description
Drupal core 8 before versions 8.3.4 allows remote attackers to execute arbitrary code due to the PECL YAML parser not handling PHP objects safely during certain operations.
Remediation
References
Related Vulnerabilities
WordPress Plugin Contact Form by BestWebSoft Cross-Site Scripting (3.51)
Moodle Exposure of Resource to Wrong Sphere Vulnerability (CVE-2022-0334)
MySQL CVE-2013-2392 Vulnerability (CVE-2013-2392)
WordPress Plugin Newsletter-Send awesome emails from WordPress Open Redirect (2.6.4.4)
WordPress Plugin Featured Posts by BestWebSoft Cross-Site Scripting (1.0.0)