CVE-2019-1000004: Jspmyadmin JSPMYADMIN2
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
yugandhargangu JspMyAdmin2 version 1.0.6 and earlier contains a Cross Site Scripting (XSS) vulnerability in sidebar and table data that can result in Database fields aren't properly sanitized and allow code injection (Cross-Site Scripting). This attack appears to be exploitable via the payload needs to be stored in the database and the victim must see the db value in question.
Affected products
- Jspmyadmin JSPMYADMIN2: up to and including 1.0.6
Published 2019-02-04. Last modified 2026-06-17.