Medium severity5.4NVD Advisory· Published Dec 1, 2020· Updated Jun 17, 2026
CVE-2020-29315
CVE-2020-29315
Description
ThinkAdmin version v1 v6 has a stored XSS vulnerability which allows remote attackers to inject an arbitrary web script or HTML.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
zoujingli/thinkadminPackagist | < 6.0.22 | 6.0.22 |
Affected products
4cpe:2.3:a:thinkadmin:thinkadmin:1.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:thinkadmin:thinkadmin:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:thinkadmin:thinkadmin:6.0:*:*:*:*:*:*:*
- ThinkAdmin/ThinkAdmindescription
Patches
Vulnerability mechanics
References
4- github.com/zoujingli/ThinkAdmin/issues/255nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-v47f-vp3p-5j6hghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-29315ghsaADVISORY
- github.com/zoujingli/ThinkAdmin/commit/5e7c2325008d0191f941666b5589c08a070ce838ghsaWEB
News mentions
0No linked articles in our index yet.