Topthink Product Security Update Advisory

Overview

 

Topthink has released an update to address vulnerabilities in their products. Users of the affected versions are advised to update to the latest version.

 

Affected Products

 

Cve-2018-20062, cve-2019-9082

  • ThinkPHP version 5.0.23

 

Resolved Vulnerabilities

 

Remote PHP code execution vulnerability in ThinkPHP (CVE-2018-20062, CVE-2019-9082) [2][3]

 

Vulnerability Patches

 

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

Cve-2018-20062, cve-2019-9082

  • ThinkPHP 5.0.23 version after

 

Referenced Sites

 

[1] https://github.com/top-think/think?tab=readme-ov-file

[2] https://nvd.nist.gov/vuln/detail/CVE-2018-20062

[3] https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-9082