Craigtaub's vulnerability profile centers on phpmsadmin, a database administration tool, with the observed exposure rooted in web application layer defects. The durable signal reflects recurring input-handling vulnerabilities including cross-site scripting and SQL injection, characteristic of web interface and form-processing code. Current severity, exploitation activity, and detailed exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Craigtaub over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-63948MEDIUM A SQL Injection vulnerability exists in phpMsAdmin version 2.2 in the database_mode.php file. An attacker can execute arbitrary SQL commands via the dbname parameter, potentially l | Dec 18, 2025 | 5.4 | 19 | NO | NO |
CVE-2025-63947MEDIUM A Reflected Cross-Site Scripting (XSS) vulnerability exists in phpMsAdmin version 2.2 in the database_mode.php file. An attacker can execute arbitrary web script or HTML via the db | Dec 18, 2025 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Craigtaub.
Media articles that mention a CVE ID that affects a product developed by Craigtaub — matched by CVE ID, not by vendor name.