Phpmoadmin is a web-based administration tool with a narrow product scope, where observed vulnerabilities center on input-handling and request-validation issues including cross-site scripting and server-side request forgery. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpmoadmin over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-25451HIGH phpMoAdmin 1.1.5 contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized database operations by crafting malicious requests. Attackers can | Feb 20, 2026 | 8.8 | 27 | NO | NO |
CVE-2019-25454MEDIUM phpMoAdmin 1.1.5 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the collection parameter. At | Feb 20, 2026 | 6.1 | 21 | NO | NO |
CVE-2019-25453MEDIUM phpMoAdmin 1.1.5 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the newdb parameter. Atta | Feb 20, 2026 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpmoadmin.
Media articles that mention a CVE ID that affects a product developed by Phpmoadmin — matched by CVE ID, not by vendor name.