CVE-2025-60797: SQL Injection Vulnerability in phpPgAdmin Vendor: https://github.com/phppgadmin/phppgadmin Affected Product Code Base: phpPgAdmin 7.13.0 and earlier Affected Versions: 7.13.0 and earlier versions likely affected Impact: SQL Injection (Code Execution, Privilege Escalation, Information Disclosure) Component: dataexport.php (line 118) Description phpPgAdmin 7.13.0 and earlier contain a SQL injection vulnerability in at line 118. User-supplied input from the parameter is passed directly into without sanitization or parameterization. An authenticated attacker can execute arbitrary SQL commands on the PostgreSQL database. Timeline October 2025: Vulnerability discovered October 2025: Submitted to MITRE October 2025: CVE ID assigned (RESERVED)