I searched and have not seen this posted yet phpMyAdmin security announcement PMASA-2006-5 http://www.phpmyadmin.net/home_page/security.php?issue=PMASA-2006-5 Announcement-ID: PMASA-2006-5 Date: 2006-10-01 Summary: XSRF (Cross Site Request Forgery) vulnerabilities Description: We received a security advisory from Stefan Esser (sesser@hardened-php.net) and we wish to thank him for his work. It was possible to inject arbitrary SQL commands by forcing an authenticated user to follow a crafted link. Severity: We consider these vulnerabilities to be serious. Affected versions: At least versions since 2.8.2.x. Solution: Upgrade to phpMyAdmin 2.9.0.1 or newer. References: (will follow) For further information and in case of questions, please contact the phpMyAdmin team. Our website is http://www.phpmyadmin.net/.
No idea, I work for EDS (Electronic Data Systems) there is a team of people dedicated to this effort. I am on an email distribution
Since several version ago, phpMyAdmin sucks They believe that their "cosmetic look" is cool but its functionality is everyday worst, similar to Adsense with that "mania" of framing the results by means of a small window that requires extra (annoying) scrolling. And then they go spreading that you must not use frames when they do. But the fact is that I have my own phpMyAdmin installation, which is the last before the gimmicks and doesn not cause any problem or security issue