Lucene search

K
osvGoogleOSV:GHSA-MWM8-36C5-J5CF
HistoryMay 14, 2022 - 2:08 a.m.

phpMyAdmin Cross-site scripting (XSS) vulnerability

2022-05-1402:08:58
Google
osv.dev
9
phpmyadmin
xss
vulnerability
openid.php
web script
html
openid error message
software

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

61.8%

Cross-site scripting (XSS) vulnerability in examples/openid.php in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to inject arbitrary web script or HTML via vectors involving an OpenID error message.