CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100698

MEDIUMCVSS 5.8NVD feed

Published 26 September 2026 · tracked since 27 September 2026

Description

Adminer 5.5.1 through 6.0.1 improperly parses the login 'server' string in the host_port() function in adminer/include/functions.inc.php. The port capture group requires pure digits anchored to the end of the string, so any server value with a non-digit tail fails the regex and falls back to returni

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100698 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100698

MEDIUMCVSS 5.8NVD feed

Published 26 September 2026 · tracked since 27 September 2026

Description

Adminer 5.5.1 through 6.0.1 improperly parses the login 'server' string in the host_port() function in adminer/include/functions.inc.php. The port capture group requires pure digits anchored to the end of the string, so any server value with a non-digit tail fails the regex and falls back to returni

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]