CVE-2017-6920

Publication date

2018-08-06 15:00:00

Family

drupal

State

PUBLISHED

Description

Drupal core 8 before versions 8.3.4 allows remote attackers to execute arbitrary code due to the PECL YAML parser not handling PHP objects safely during certain operations.