<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T16:52:50.632194+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2014-avi-386</id>
    <title>certfr-2014-avi-386 — Une vulnérabilité a été corrigée dans &lt;span
class="textit"&gt;phpMyAdmin&lt;/span&gt;. Elle permet à un attaquant de
provoquer u…</title>
    <updated>2026-10-05T16:52:50.723799+00:00</updated>
    <content>certfr-2014-avi-386</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2014-avi-386"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-101460</id>
    <title>EUVD-2026-101460</title>
    <updated>2026-10-05T16:52:50.723869+00:00</updated>
    <content>EUVD-2026-101460</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-101460"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-6300</id>
    <title>fkie_cve-2014-6300</title>
    <updated>2026-10-05T16:52:50.723897+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x before 4.1.14.4, and 4.2.x before 4.2.8.1 allows remote attackers to inject arbitrary web script or HTML, and consequently conduct a cross-site request forgery (CSRF) attack to create a root account, via a crafted URL, related to js/ajax.js.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-6300"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6wfj-2mw7-p5cg</id>
    <title>GHSA-6wfj-2mw7-p5cg — phpMyAdmin micro history Implementation XSS Vulnerability</title>
    <updated>2026-10-05T16:52:50.723931+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist: phpmyadmin/phpmyadmin</p>
<p>Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x before 4.1.14.4, and 4.2.x before 4.2.8.1 allows remote attackers to inject arbitrary web script or HTML, and consequently conduct a cross-site request forgery (CSRF) attack to create a root account, via a crafted URL, related to js/ajax.js.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6wfj-2mw7-p5cg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-6300</id>
    <title>gsd-2014-6300</title>
    <updated>2026-10-05T16:52:50.723958+00:00</updated>
    <content>gsd-2014-6300</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-6300"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10054-1</id>
    <title>openSUSE-SU-2024:10054-1 — phpMyAdmin-4.6.5.2-1.1 on GA media</title>
    <updated>2026-10-05T16:52:50.723972+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>phpMyAdmin-4.6.5.2-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10054-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-6300</id>
    <title>UBUNTU-CVE-2014-6300</title>
    <updated>2026-10-05T16:52:50.724056+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: phpmyadmin</p>
<p>Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x before 4.1.14.4, and 4.2.x before 4.2.8.1 allows remote attackers to inject arbitrary web script or HTML, and consequently conduct a cross-site request forgery (CSRF) attack to create a root account, via a crafted URL, related to js/ajax.js.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-6300"/>
  </entry>
</feed>
