phpmyadmin vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the phpmyadmin package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Resource Exhaustion

*
  • M
Cross-site Scripting (XSS)

*
  • L
CVE-2016-6633

*
  • M
Cross-site Scripting (XSS)

*
  • M
SQL Injection

*
  • M
SQL Injection

*
  • M
CVE-2019-19617

<4:4.0.10-1ubuntu0.1+esm2
  • M
Cross-site Request Forgery (CSRF)

<4:4.0.10-1ubuntu0.1+esm1
  • M
Cross-site Request Forgery (CSRF)

<4:4.0.10-1ubuntu0.1+esm1
  • M
CVE-2019-6799

*
  • M
Information Exposure

<4:4.0.10-1ubuntu0.1+esm4
  • M
Cross-site Scripting (XSS)

<4:4.0.10-1ubuntu0.1+esm1
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Cross-site Scripting (XSS)

<4:4.0.10-1ubuntu0.1+esm1
  • M
CVE-2017-18264

<4:4.0.10-1ubuntu0.1+esm4
  • L
Server-Side Request Forgery (SSRF)

*
  • L
Open Redirect

*
  • L
Improper Input Validation

*
  • M
Improper Input Validation

<4:4.0.10-1ubuntu0.1+esm4
  • M
Cross-site Scripting (XSS)

<4:4.0.10-1ubuntu0.1+esm4
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Cross-site Request Forgery (CSRF)

<4:4.0.10-1ubuntu0.1+esm3
  • M
SQL Injection

*
  • M
Improper Input Validation

*
  • M
Security Features

*
  • M
Security Features

*
  • H
OS Command Injection

<4:4.0.10-1ubuntu0.1
  • M
Improper Input Validation

<4:4.0.10-1ubuntu0.1+esm3
  • M
SQL Injection

*
  • M
Security Features

*
  • M
Security Features

*
  • M
Improper Input Validation

*
  • L
Information Exposure

*
  • L
CVE-2016-6618

*
  • L
Resource Management Errors

*
  • M
SQL Injection

<4:4.0.10-1ubuntu0.1+esm3
  • M
Arbitrary Command Injection

<4:4.0.10-1ubuntu0.1+esm3
  • L
Resource Management Errors

*
  • M
Security Features

*
  • L
Information Exposure

*
  • M
Information Exposure

*
  • M
Security Features

*
  • M
SQL Injection

*
  • M
Improper Input Validation

*
  • M
Security Features

*
  • M
Access Restriction Bypass

<4:4.0.10-1ubuntu0.1+esm3
  • M
Information Exposure

*
  • L
Information Exposure

*
  • M
Security Features

*
  • L
Cross-site Scripting (XSS)

*
  • M
Security Features

*
  • H
Cryptographic Issues

<4:4.0.10-1ubuntu0.1
  • L
Directory Traversal

*
  • M
Cross-site Scripting (XSS)

*
  • L
Information Exposure

*
  • M
Deserialization of Untrusted Data

*
  • M
Cryptographic Issues

*
  • M
Improper Input Validation

*
  • L
Cross-site Scripting (XSS)

*
  • L
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
SQL Injection

*
  • M
Arbitrary Code Injection

*
  • M
Cross-site Scripting (XSS)

*
  • L
Resource Management Errors

*
  • M
Arbitrary Code Injection

*
  • L
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Security Features

*
  • M
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Improper Input Validation

*
  • L
Information Exposure

*
  • L
Information Exposure

*
  • M
Security Features

*
  • L
Cross-site Scripting (XSS)

*
  • L
Cross-site Scripting (XSS)

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • L
Information Exposure

*
  • M
Credentials Management

*
  • L
Information Exposure

*
  • M
Cross-site Request Forgery (CSRF)

*
  • M
Cryptographic Issues

*
  • L
Information Exposure

*
  • M
Resource Management Errors

<4:4.0.10-1ubuntu0.1+esm4
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • L
Directory Traversal

*
  • M
Directory Traversal

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Access Restriction Bypass

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*