Adminer 4.6.1 to 4.8.0 contains a cross-site scripting vulnerability which affects users of MySQL, MariaDB, PgSQL, and SQLite in browsers without CSP when Adminer uses a `pdo_` extension to communicate with the database (it is used if the native extensions are not enabled).
id: CVE-2021-29625
info:
name: Adminer <=4.8.0 - Cross-Site Scripting
author: daffainfo
sever
...