phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.
{
"nvd_published_at": "2018-01-03T14:29:00Z",
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2023-07-26T21:53:03Z",
"cwe_ids": [
"CWE-352"
]
}