CVE-2019-6798: phpMyAdmin

Critical severity, CVSS 9.8. EPSS: 3.5% chance of exploitation in the next 30 days.

An issue was discovered in phpMyAdmin before 4.8.5. A vulnerability was reported where a specially crafted username can be used to trigger a SQL injection attack through the designer feature.

Affected products

  • phpMyAdmin phpMyAdmin: from 4.5.0, up to and including 4.8.4

Published 2019-01-26. Last modified 2026-06-17.