CVE-2021-21311
Adminer is an open-source database management in a single PHP file. In adminer from version 4.0.0 and before 4.7.9 there is a server-side request forgery vulnerability. Users of Adminer versions bundling all drivers (e.g. adminer.php) are affected. This is fixed in version 4.7.9.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://packagist.org/packages/vrana/adminer, https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-21311, https://github.com/vrana/adminer/files/5957311/Adminer.SSRF.pdf, https://github.com/vrana/adminer/security/advisories/GHSA-x5r2-hj5c-8jx6, https://lists.debian.org/debian-lts-announce/2021/03/msg00002.html, https://github.com/vrana/adminer/commit/ccd2374b0b12bd547417bf0dacdf153826c83351
