CVE-2026-103474 | yii-starter-kit yii2-starter-kit up to 4.2.0 Backend Storage Upload unrestricted upload
A vulnerability was found in yii-starter-kit yii2-starter-kit up to 4.2.0 and classified as critical. Impacted is an unknown function of the component Backend Storage Upload. Executing a manipulation can lead to unrestricted upload.
This vulnerability appears as CVE-2026-103474. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More