Description
PhpMyAdmin 5.1.1 and before allows an attacker to retrieve potentially sensitive information by creating invalid requests. This affects the lang parameter, the pma_parameter, and the cookie section.
Remediation
References
Related Vulnerabilities
WordPress Plugin Facebook for WordPress Cross-Site Request Forgery (3.0.3)
WordPress Plugin OptionTree Cross-Site Scripting (2.5.3)
WordPress Plugin Custom Sidebars-Dynamic Widget Area Manager Cross-Site Scripting (2.1.0.1)
Craft CMS Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-30179)