Moderate severityNVD Advisory· Published Feb 9, 2021· Updated Aug 4, 2024
CVE-2020-35572
CVE-2020-35572
Description
Adminer through 4.7.8 allows XSS via the history parameter to the default URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
vrana/adminerPackagist | < 4.7.9 | 4.7.9 |
Affected products
3- Adminer/Adminerdescription
Patches
Vulnerability mechanics
Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
8- github.com/advisories/GHSA-9pgx-gcph-mpqrghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-35572ghsaADVISORY
- github.com/vrana/adminer/commit/5c395afc098e501be3417017c6421968aac477bdghsaWEB
- github.com/vrana/adminer/security/advisories/GHSA-9pgx-gcph-mpqrghsaWEB
- sourceforge.net/p/adminer/bugs-and-features/775ghsaWEB
- sourceforge.net/p/adminer/bugs-and-features/775/mitrex_refsource_MISC
- sourceforge.net/p/adminer/news/mitrex_refsource_MISC
- sourceforge.net/p/adminer/news/2021/02/adminer-479-releasedghsaWEB
News mentions
0No linked articles in our index yet.