Description
Cross-site scripting (XSS) vulnerability in the format function in libraries/sql-parser/src/Utils/Error.php in the SQL parser in phpMyAdmin 4.5.x before 4.5.5.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted query.
Remediation
References
Related Vulnerabilities
WordPress Plugin Custom Banners Cross-Site Scripting (1.2.2.2)
Apache HTTP Server Numeric Errors Vulnerability (CVE-2003-1580)
WordPress Plugin Modern Events Calendar Lite Security Bypass (5.1.6)
Liferay DXP URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2023-5190)
PHP Resource Management Errors Vulnerability (CVE-2010-3710)