An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicious SVG file. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| phpmyadmin/phpmyadmin(Packagist) | 4.6 | 4.6.4 | N/A |
| phpmyadmin/phpmyadmin(Packagist) | 4.4 | 4.4.15.8 | N/A |
| phpmyadmin/phpmyadmin(Packagist) | 4.0 | 4.0.10.17 | N/A |
CVSS Metrics