Description
XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functionality. Specially crafted database names can trigger the XSS attack. All 4.6.x versions (prior to 4.6.4) are affected.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2014-0456 Vulnerability (CVE-2014-0456)
WordPress Plugin Manage Notification E-mails Cross-Site Request Forgery (1.8.2)
WordPress Plugin Custom 404 Pro Cross-Site Scripting (3.2.8)
Oracle JRE CVE-2020-2830 Vulnerability (CVE-2020-2830)
Grafana Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-28376)