CVE-2025-24529: XSS
Published Jan 23, 2025
·Updated
An issue was discovered in phpMyAdmin 5.x before 5.2.2. An XSS vulnerability has been discovered for the Insert tab.
Affected Software
1 affected component
phpMyAdmin phpMyAdmin<5.2.2
Event History
Jan 23, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-24529?
CVE-2025-24529 is classified as a medium severity XSS vulnerability in phpMyAdmin.
2
How do I fix CVE-2025-24529?
To fix CVE-2025-24529, upgrade phpMyAdmin to version 5.2.2 or later.
3
What specific versions of phpMyAdmin are affected by CVE-2025-24529?
CVE-2025-24529 affects all phpMyAdmin versions prior to 5.2.2.
4
What type of attack can CVE-2025-24529 lead to?
CVE-2025-24529 can lead to cross-site scripting (XSS) attacks.
5
Is there a workaround for CVE-2025-24529 if upgrading is not possible?
There is no official workaround for CVE-2025-24529, so upgrading to the latest version is recommended.