Medium severity6.1NVD Advisory· Published May 4, 2020· Updated Jun 17, 2026
CVE-2020-12639
CVE-2020-12639
Description
phpList before 3.5.3 allows XSS, with resultant privilege elevation, via lists/admin/template.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- phpList/phpListdescription
Patches
Vulnerability mechanics
References
2- github.com/phpList/phplist3/compare/3.5.2...3.5.3nvdRelease NotesThird Party Advisory
- www.phplist.org/newslist/phplist-3-5-3-release-notes/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.