Puvox's limited vulnerability profile centers on a web application management tool that serves as a frontend for phpMyAdmin, a widely deployed database administration interface. The observed weakness class reflects application-layer input handling, with cross-site scripting vulnerabilities identified in the product's web page generation logic. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Puvox over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-2407MEDIUM The WP phpMyAdmin WordPress plugin before 5.2.0.4 does not escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting | Aug 22, 2022 | 4.8 | 15 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Puvox.
Media articles that mention a CVE ID that affects a product developed by Puvox — matched by CVE ID, not by vendor name.