Description
An issue was discovered in phpMyAdmin before 4.8.3. A Cross-Site Scripting vulnerability has been found where an attacker can use a crafted file to manipulate an authenticated user who loads that file through the import feature.
Remediation
References
Related Vulnerabilities
Internet Information Services Other Vulnerability (CVE-1999-1376)
PHP CVE-2022-31629 Vulnerability (CVE-2022-31629)
WordPress Plugin Zedna Contact form Arbitrary File Upload (1.0)
Django Authentication Bypass by Spoofing Vulnerability (CVE-2026-3902)
WordPress Plugin WP Advanced Importer Cross-Site Scripting (2.1.1)