Lucene search

K
osvGoogleOSV:GHSA-J8MX-X32R-5RF4
HistoryMay 17, 2022 - 2:36 a.m.

phpMyAdmin XSS Vulnerability

2022-05-1702:36:37
Google
osv.dev
9
phpmyadmin
xss
vulnerability
improper fix
cve-2016-2559
pmasa-2016-10
race condition

EPSS

0.001

Percentile

48.3%

An XSS issue was discovered in phpMyAdmin because of an improper fix for CVE-2016-2559 in PMASA-2016-10. This issue is resolved by using a copy of a hash to avoid a race condition. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.