1 2 3 4<!doctype html> 5<html lang="en" data-bs-theme="auto"> 6 <head> 7 <meta charset="utf-8"> 8 <meta name="viewport" content="width=device-width, initial-scale=1"> 9 <meta name="robots" content="index, follow"> 10 <link rel="icon" type="image/x-icon" href="/static/favicon.ico"> 11 <title>News · phpMyAdmin</title> 12 <meta name="author" content="phpMyAdmin contributors"> 13 <meta property="og:title" content="News"> 14 <meta property="og:site_name" content="phpMyAdmin"> 15 <meta property="og:image" content="https://www.phpmyadmin.net/static/images/logo-og.png"> 16 17 <link rel="alternate" type="application/rss+xml" href="/news/feed/" title="phpMyAdmin news"/> 18 19 20 <meta property="og:type" content="website"> 21 22 <link rel="stylesheet" href="/static/CACHE/css/output.5d0605734234.css" type="text/css"> 23
23<script src="/static/CACHE/js/output.33d8175d4696.js"></script>
23 24 </head> 25 <body> 26 <svg xmlns="http://www.w3.org/2000/svg" class="d-none"> 27 <symbol id="calendar-event" viewBox="0 0 16 16"> 28 <path d="M11 6.5a.5.5 0 0 1 .5-.5h1a.5.5 0 0 1 .5.5v1a.5.5 0 0 1-.5.5h-1a.5.5 0 0 1-.5-.5z"/> 29 <path d="M3.5 0a.5.5 0 0 1 .5.5V1h8V.5a.5.5 0 0 1 1 0V1h1a2 2 0 0 1 2 2v11a2 2 0 0 1-2 2H2a2 2 0 0 1-2-2V3a2 2 0 0 1 2-2h1V.5a.5.5 0 0 1 .5-.5M1 4v10a1 1 0 0 0 1 1h12a1 1 0 0 0 1-1V4z"/> 30 </symbol> 31 <symbol id="check2" viewBox="0 0 16 16"> 32 <path d="M13.854 3.646a.5.5 0 0 1 0 .708l-7 7a.5.5 0 0 1-.708 0l-3.5-3.5a.5.5 0 1 1 .708-.708L6.5 10.293l6.646-6.647a.5.5 0 0 1 .708 0z"/> 33 </symbol> 34 <symbol id="circle-half" viewBox="0 0 16 16"> 35 <path d="M8 15A7 7 0 1 0 8 1v14zm0 1A8 8 0 1 1 8 0a8 8 0 0 1 0 16z"/> 36 </symbol> 37 <symbol id="credit-card" viewBox="0 0 16 16"> 38 <path d="M0 4a2 2 0 0 1 2-2h12a2 2 0 0 1 2 2v8a2 2 0 0 1-2 2H2a2 2 0 0 1-2-2zm2-1a1 1 0 0 0-1 1v1h14V4a1 1 0 0 0-1-1zm13 4H1v5a1 1 0 0 0 1 1h12a1 1 0 0 0 1-1z"/> 39 <path d="M2 10a1 1 0 0 1 1-1h1a1 1 0 0 1 1 1v1a1 1 0 0 1-1 1H3a1 1 0 0 1-1-1z"/> 40 </symbol> 41 <symbol id="download" viewBox="0 0 16 16"> 42 <path d="M.5 9.9a.5.5 0 0 1 .5.5v2.5a1 1 0 0 0 1 1h12a1 1 0 0 0 1-1v-2.5a.5.5 0 0 1 1 0v2.5a2 2 0 0 1-2 2H2a2 2 0 0 1-2-2v-2.5a.5.5 0 0 1 .5-.5"/> 43 <path d="M7.646 11.854a.5.5 0 0 0 .708 0l3-3a.5.5 0 0 0-.708-.708L8.5 10.293V1.5a.5.5 0 0 0-1 0v8.793L5.354 8.146a.5.5 0 1 0-.708.708z"/> 44 </symbol> 45 <symbol id="eye" viewBox="0 0 16 16"> 46 <path d="M16 8s-3-5.5-8-5.5S0 8 0 8s3 5.5 8 5.5S16 8 16 8M1.173 8a13 13 0 0 1 1.66-2.043C4.12 4.668 5.88 3.5 8 3.5s3.879 1.168 5.168 2.457A13 13 0 0 1 14.828 8q-.086.13-.195.288c-.335.48-.83 1.12-1.465 1.755C11.879 11.332 10.119 12.5 8 12.5s-3.879-1.168-5.168-2.457A13 13 0 0 1 1.172 8z"/> 47 <path d="M8 5.5a2.5 2.5 0 1 0 0 5 2.5 2.5 0 0 0 0-5M4.5 8a3.5 3.5 0 1 1 7 0 3.5 3.5 0 0 1-7 0"/> 48 </symbol> 49 <symbol id="facebook" viewBox="0 0 16 16"> 50 <path d="M16 8.049c0-4.446-3.582-8.05-8-8.05C3.58 0-.002 3.603-.002 8.05c0 4.017 2.926 7.347 6.75 7.951v-5.625h-2.03V8.05H6.75V6.275c0-2.017 1.195-3.131 3.022-3.131.876 0 1.791.157 1.791.157v1.98h-1.009c-.993 0-1.303.621-1.303 1.258v1.51h2.218l-.354 2.326H9.25V16c3.824-.604 6.75-3.934 6.75-7.951z"/> 51 </symbol> 52 <symbol id="github" viewBox="0 0 16 16"> 53 <path d="M8 0C3.58 0 0 3.58 0 8c0 3.54 2.29 6.53 5.47 7.59.4.07.55-.17.55-.38 0-.19-.01-.82-.01-1.49-2.01.37-2.53-.49-2.69-.94-.09-.23-.48-.94-.82-1.13-.28-.15-.68-.52-.01-.53.63-.01 1.08.58 1.23.82.72 1.21 1.87.87 2.33.66.07-.52.28-.87.51-1.07-1.78-.2-3.64-.89-3.64-3.95 0-.87.31-1.59.82-2.15-.08-.2-.36-1.02.08-2.12 0 0 .67-.21 2.2.82.64-.18 1.32-.27 2-.27s1.36.09 2 .27c1.53-1.04 2.2-.82 2.2-.82.44 1.1.16 1.92.08 2.12.51.56.82 1.27.82 2.15 0 3.07-1.87 3.75-3.65 3.95.29.25.54.73.54 1.48 0 1.07-.01 1.93-.01 2.2 0 .21.15.46.55.38A8.01 8.01 0 0 0 16 8c0-4.42-3.58-8-8-8"/> 54 </symbol> 55 <symbol id="moon-stars-fill" viewBox="0 0 16 16"> 56 <path d="M6 .278a.768.768 0 0 1 .08.858 7.208 7.208 0 0 0-.878 3.46c0 4.021 3.278 7.277 7.318 7.277.527 0 1.04-.055 1.533-.16a.787.787 0 0 1 .81.316.733.733 0 0 1-.031.893A8.349 8.349 0 0 1 8.344 16C3.734 16 0 12.286 0 7.71 0 4.266 2.114 1.312 5.124.06A.752.752 0 0 1 6 .278z"/> 57 <path d="M10.794 3.148a.217.217 0 0 1 .412 0l.387 1.162c.173.518.579.924 1.097 1.097l1.162.387a.217.217 0 0 1 0 .412l-1.162.387a1.734 1.734 0 0 0-1.097 1.097l-.387 1.162a.217.217 0 0 1-.412 0l-.387-1.162A1.734 1.734 0 0 0 9.31 6.593l-1.162-.387a.217.217 0 0 1 0-.412l1.162-.387a1.734 1.734 0 0 0 1.097-1.097l.387-1.162zM13.863.099a.145.145 0 0 1 .274 0l.258.774c.115.346.386.617.732.732l.774.258a.145.145 0 0 1 0 .274l-.774.258a1.156 1.156 0 0 0-.732.732l-.258.774a.145.145 0 0 1-.274 0l-.258-.774a1.156 1.156 0 0 0-.732-.732l-.774-.258a.145.145 0 0 1 0-.274l.774-.258c.346-.115.617-.386.732-.732L13.863.1z"/> 58 </symbol> 59 <symbol id="sun-fill" viewBox="0 0 16 16"> 60 <path d="M8 12a4 4 0 1 0 0-8 4 4 0 0 0 0 8zM8 0a.5.5 0 0 1 .5.5v2a.5.5 0 0 1-1 0v-2A.5.5 0 0 1 8 0zm0 13a.5.5 0 0 1 .5.5v2a.5.5 0 0 1-1 0v-2A.5.5 0 0 1 8 13zm8-5a.5.5 0 0 1-.5.5h-2a.5.5 0 0 1 0-1h2a.5.5 0 0 1 .5.5zM3 8a.5.5 0 0 1-.5.5h-2a.5.5 0 0 1 0-1h2A.5.5 0 0 1 3 8zm10.657-5.657a.5.5 0 0 1 0 .707l-1.414 1.415a.5.5 0 1 1-.707-.708l1.414-1.414a.5.5 0 0 1 .707 0zm-9.193 9.193a.5.5 0 0 1 0 .707L3.05 13.657a.5.5 0 0 1-.707-.707l1.414-1.414a.5.5 0 0 1 .707 0zm9.193 2.121a.5.5 0 0 1-.707 0l-1.414-1.414a.5.5 0 0 1 .707-.707l1.414 1.414a.5.5 0 0 1 0 .707zM4.464 4.465a.5.5 0 0 1-.707 0L2.343 3.05a.5.5 0 1 1 .707-.707l1.414 1.414a.5.5 0 0 1 0 .708z"/> 61 </symbol> 62 <symbol id="twitter-x" viewBox="0 0 16 16"> 63 <path d="M12.6.75h2.454l-5.36 6.142L16 15.25h-4.937l-3.867-5.07-4.425 5.07H.316l5.733-6.57L0 .75h5.063l3.495 4.633L12.601.75Zm-.86 13.028h1.36L4.323 2.145H2.865z"/> 64 </symbol> 65</svg> 66 67 68 <header class="border-bottom"> 69 <nav class="navbar navbar-expand-lg bg-body-tertiary border-bottom"> 70 <div class="container"> 71 <button class="navbar-toggler" type="button" data-bs-toggle="collapse" data-bs-target="#navbarSupportedContent" aria-controls="navbarSupportedContent" aria-expanded="false" aria-label="Toggle navigation">
72 <span class="navbar-toggler-icon"></span> 73 </button> 74 <div class="collapse navbar-collapse" id="navbarSupportedContent"> 75 <ul class="navbar-nav me-auto mb-2 mb-lg-0"> 76 77 <li class="nav-item"> 78 <a class="nav-link" href="/">Home</a> 79 </li> 80 81 <li class="nav-item"> 82 <a class="nav-link active" aria-current="page" href="/news/">News</a> 83 </li> 84 85 <li class="nav-item"> 86 <a class="nav-link" href="/security/">Security</a> 87 </li> 88 89 <li class="nav-item"> 90 <a class="nav-link" href="/support/">Support</a> 91 </li> 92 93 <li class="nav-item"> 94 <a class="nav-link" href="/docs/">Docs</a> 95 </li> 96 97 <li class="nav-item"> 98 <a class="nav-link" href="/try/">Try</a> 99 </li> 100 101 <li class="nav-item"> 102 <a class="nav-link" href="/contribute/">Contribute</a> 103 </li> 104 105 <li class="nav-item"> 106 <a class="nav-link" href="/sponsors/">Sponsors</a> 107 </li> 108 109 <li class="nav-item"> 110 <a class="nav-link" href="/themes/">Themes</a> 111 </li> 112 113 <li class="nav-item"> 114 <a class="nav-link" href="/downloads/">Download</a> 115 </li> 116 117 </ul> 118 <ul class="navbar-nav ms-auto mb-2 mb-lg-0"> 119 <li class="nav-item"> 120 <a class="nav-link" href="https://github.com/phpmyadmin/phpmyadmin" target="_blank" rel="noopener"> 121 <svg class="bi"><use href="#github"></use></svg> 122 <small class="d-lg-none ms-2">GitHub</small> 123 </a> 124 </li> 125 <li class="nav-item"> 126 <a class="nav-link" href="https://www.facebook.com/pmyadmin/" target="_blank" rel="noopener"> 127 <svg class="bi"><use href="#facebook"></use></svg> 128 <small class="d-lg-none ms-2">Facebook</small> 129 </a> 130 </li> 131 <li class="nav-item"> 132 <a class="nav-link" href="https://x.com/phpmya" target="_blank" rel="noopener"> 133 <svg class="bi"><use href="#twitter-x"></use></svg> 134 <small class="d-lg-none ms-2">Twitter</small> 135 </a> 136 </li> 137 <li class="nav-item py-2 py-lg-1 col-12 col-lg-auto"> 138 <div class="vr d-none d-lg-flex h-100 mx-lg-2 text-emphasis"></div> 139 <hr class="d-lg-none my-2 text-emphasis"> 140 </li> 141 <li class="nav-item dropdown"> 142 <button class="btn btn-link nav-link py-2 px-0 px-lg-2 dropdown-toggle d-flex align-items-center" id="bd-theme" type="button" aria-expanded="false" data-bs-toggle="dropdown" data-bs-display="static" aria-label="Toggle theme"> 143 <svg class="bi my-1 theme-icon-active"><use href="#moon-stars-fill"></use></svg> 144 <span class="d-lg-none ms-2" id="bd-theme-text">Toggle theme</span> 145 </button> 146 <ul class="dropdown-menu dropdown-menu-end" aria-labelledby="bd-theme-text"> 147 <li> 148 <button type="button" class="dropdown-item d-flex align-items-center" data-bs-theme-value="light" aria-pressed="false"> 149 <svg class="bi me-2 opacity-50"><use href="#sun-fill"></use></svg> 150 Light 151 </button> 152 </li> 153 <li> 154 <button type="button" class="dropdown-item d-flex align-items-center active" data-bs-theme-value="dark" aria-pressed="true"> 155 <svg class="bi me-2 opacity-50"><use href="#moon-stars-fill"></use></svg> 156 Dark 157 </button> 158 </li> 159 <li> 160 <button type="button" class="dropdown-item d-flex align-items-center" data-bs-theme-value="auto" aria-pressed="false"> 161 <svg class="bi me-2 opacity-50"><use href="#circle-half"></use></svg> 162 Auto 163 </button> 164 </li> 165 </ul> 166 </li> 167 </ul> 168 </div> 169 </div> 170 </nav> 171 172 <div class="container my-4"> 173 <div class="row align-items-center"> 174 <div class="col-12 col-sm-6 col-lg-9 text-center text-lg-start mb-3 mb-lg-0"> 175 <div class="d-flex align-items-center justify-content-center justify-content-sm-start"> 176 <a href="/"><span id="logo">phpMyAdmin</span></a> 177 <p class="fs-4 m-0 ms-4 d-none d-lg-block">Bringing MySQL administration to the web</p> 178 </div> 179 </div> 180 <div class="col-12 col-sm-6 col-lg-3"> 181 <div class="d-grid gap-2"> 182 183 <a download 184 class="btn btn-success download-button"
185 href="https://files.phpmyadmin.net/phpMyAdmin/5.2.3/phpMyAdmin-5.2.3-all-languages.zip" 186 data-sha256="2d2e13c735366d318425c78e4ee2cc8fc648d77faba3ddea2cd516e43885733f" 187 data-pgp="https://files.phpmyadmin.net/phpMyAdmin/5.2.3/phpMyAdmin-5.2.3-all-languages.zip.asc" 188 data-bs-toggle="tooltip" 189 data-bs-placement="left" 190 data-bs-delay='{"show":500}' 191 title="Download zip compressed release, 15.7 MB" 192 > 193 <svg class="bi"><use href="#download"></use></svg> 194 Download 5.2.3 195 </a> 196 197 198 199 200 201<div class="d-flex gap-2"> 202 <a class="btn btn-secondary flex-fill" href="https://demo.phpmyadmin.net/master-config/public/" target="_blank" rel="noopener"> 203 <svg class="bi"><use href="#eye"></use></svg> 204 Demo 205 </a> 206 207 <a class="btn btn-secondary flex-fill" href="/donate/"> 208 <svg class="bi"><use href="#credit-card"></use></svg> 209 Donate 210 </a> 211</div> 212 213 </div> 214 </div> 215 </div> 216 </div> 217 </header> 218 219 <main> 220 <div class="container py-4"> 221 222<div class="row"> 223 <div class="col-12 col-md-8"> 224 225 <article class="mb-4"> 226 <header> 227 <h2> 228 <a href="/news/2025/10/8/phpmyadmin-523-is-released/">phpMyAdmin 5.2.3 is released</a> 229 </h2> 230 <p class="text-muted mb-3"> 231 <time datetime="2025-10-08T04:10:31+00:00" title="2025-10-08 04:10"> 232 <svg class="bi"><use href="#calendar-event"></use></svg> 233 October 8, 2025 234 </time> 235 </p> 236 </header> 237 <div> 238 <p>Welcome to the release of phpMyAdmin 5.2.3, a bugfix release.</p> 239<p>Please note that we are working towards the release of phpMyAdmin 6, which is expected to require PHP 8.2.0 or newer and MySQL 5.5 or newer or MariaDB 5.5 or newer. New releases and support for phpMyAdmin 5 is expected to end in the near future.</p> 240<p>Some notable fixes in this release include:</p> 241<ul> 242<li>Fixed "Delete" button not asking for confirmation when deleting a row</li> 243<li>Remove the <code>maxlength</code> for routines name</li> 244<li>Fix error 500 when simulating a <code>SET</code> statement</li> 245<li>Fixed PHP 8.4 deprecations in <code>thecodingmachine/safe</code></li> 246<li>Improved GIS visualization to work with huge tables</li> 247<li>Fix copy to clipboard</li> 248<li>Fixed some PHP 8.4 and PHP 8.5 deprecations</li> 249<li>Add support for "bacon-qr-code" v3, which relates to two-factor authentication</li> 250<li>Fixes for right-to-left languages</li> 251</ul> 252<p>There are many more changes which can be viewed online at <a href="https://github.com/phpmyadmin/phpmyadmin/blob/RELEASE_5_2_3/ChangeLog">https://github.com/phpmyadmin/phpmyadmin/blob/RELEASE_5_2_3/ChangeLog</a></p> 253<p>Downloads are available now at <a href="https://phpmyadmin.net/downloads/">https://phpmyadmin.net/downloads/</a></p> 254<p>For the phpMyAdmin team, 255Isaac</p> 256 </div> 257 </article> 258 259 <article class="mb-4"> 260 <header> 261 <h2> 262 <a href="/news/2025/1/21/phpMyAdmin-522-is-released/">phpMyAdmin 5.2.2 is released</a> 263 </h2> 264 <p class="text-muted mb-3"> 265 <time datetime="2025-01-21T19:43:35+00:00" title="2025-01-21 19:43"> 266 <svg class="bi"><use href="#calendar-event"></use></svg> 267 January 21, 2025 268 </time> 269 </p> 270 </header> 271 <div> 272 <p>Welcome to the release of phpMyAdmin version 5.2.2, the "I should have released this sooner" release. This is primarily a bugfix release but also contains a few security fixes as noted below.</p> 273<ul> 274<li>fix possible security issue in sql-parser which could cause long execution times that could create a DOS attack (thanks to Maximilian Krög <a href="https://github.com/MoonE">https://github.com/MoonE</a>)</li> 275<li>fix an XSS vulnerability in the check tables feature (PMASA-2025-1, thanks to bluebird <a href="https://github.com/blue-bird1">https://github.com/blue-bird1</a>)</li> 276<li>fix an XSS vulnerability in the Insert tab (PMASA-2025-2, thanks to frequent contributor Kamil Tekiela <a href="https://github.com/kamil-tekiela">https://github.com/kamil-tekiela</a>)</li> 277<li>fix possible security issue with library code slim/psr7 (CVE-2023-30536)</li> 278<li>fix possible security issue relating to iconv (CVE-2024-2961, PMASA-2025-3)</li> 279<li>fix a full path disclosure in the Monitoring tab</li> 280<li>issue #18268 Fix UI issue the theme manager is disabled</li> 281<li>issue Allow opening server breadcrumb links in new tab with Ctrl/Meta key</li> 282<li>issue #19141 Add cookie prefix '-__Secure-' to cookies to help prevent cookie smuggling</li> 283<li>issue #18106 Fix renaming database with a view</li> 284<li>issue #18120 Fix bug with numerical tables during renaming database</li> 285<li>issue #16851 Fix ($cfg['Order']) default column order doesn't have have any effect since phpMyAdmin 4.2.0</li> 286<li>
286issue #18258 Speed improvements when exporting a database</li> 287<li>issue #18769 Improved collations support for MariaDB 10.10</li> 288</ul> 289<p>There are many, many more fixes that you can see in the ChangeLog file included with this release or online at https://github.com/phpmyadmin/phpmyadmin/blob/RELEASE_5_2_2/ChangeLog</p> 290<p>Downloads are available now at https://phpmyadmin.net/downloads/</p> 291<p>For the phpMyAdmin team, 292Isaac</p> 293 </div> 294 </article> 295 296 <article class="mb-4"> 297 <header> 298 <h2> 299 <a href="/news/2023/2/8/phpmyadmin-4911-and-521-are-released/">phpMyAdmin 4.9.11 and 5.2.1 are released</a> 300 </h2> 301 <p class="text-muted mb-3"> 302 <time datetime="2023-02-08T02:33:59+00:00" title="2023-02-08 02:33"> 303 <svg class="bi"><use href="#calendar-event"></use></svg> 304 February 8, 2023 305 </time> 306 </p> 307 </header> 308 <div> 309 <p>The phpMyAdmin team is pleased to announce the release of phpMyAdmin version 5.2.1. This is a bugfix release that also contains a security fix for an XSS vulnerability in the drag-and-drop upload functionality (PMASA-2023-01). We are also releasing version 4.9.11 which exclusively fixes the XSS vulnerability.</p> 310<p>This release of 5.2.1 contains many bug fixes.</p> 311<p>Some highlights include: 312- issue #17506 Fix error when configuring 2FA without XMLWriter or Imagick 313- issue #17519 Fix Export pages not working in certain conditions 314- issue #17121 Fix password_hash function incorrectly adding single quotes to password before hashing 315- issue #17736 Add utf8mb3 as an alias of utf8 on the charset description page 316- issue #17248 Support the UUID data type for MariaDB >= 10.7 317- issue #16042 Fixes malformed downloads when using gzip compression type and FireFox browser 318- Add <code>spellcheck="false"</code> to all password fields and some text fields to avoid spell-jacking data leaks 319- Fixes for JavaScript errors when using Designer 320- Fixes for PHP 8.2 compatibility</p> 321<p>There are, of course, many more fixes and new features that you can see in the ChangeLog file included with this release or online at https://demo.phpmyadmin.net/master-config/index.php?route=/changelog</p> 322<p>Downloads are available now at https://phpmyadmin.net/downloads/</p> 323<p>For the phpMyAdmin team, 324Isaac</p> 325 </div> 326 </article> 327 328 <article class="mb-4"> 329 <header> 330 <h2> 331 <a href="/news/2022/5/10/phpmyadmin-520-released/">phpMyAdmin 5.2.0 is released</a> 332 </h2> 333 <p class="text-muted mb-3"> 334 <time datetime="2022-05-10T23:14:07+00:00" title="2022-05-10 23:14"> 335 <svg class="bi"><use href="#calendar-event"></use></svg> 336 May 10, 2022 337 </time> 338 </p> 339 </header> 340 <div> 341 <p>Welcome to the release of phpMyAdmin version 5.2.0. This release contains many new features and quite a few bug fixes. We are simultaneously releasing phpMyAdmin 5.1.4, which is the last release of the 5.1 line and is mostly intended to help downstream packaging teams. Most users should migrate to 5.2.0.</p> 342<p>Most notably, these releases resolve a networking error when exp
342orting a file (<a href="https://github.com/phpmyadmin/phpmyadmin/issues/17445">https://github.com/phpmyadmin/phpmyadmin/issues/17445</a>).</p> 343<p>Some other highlights of 5.2.0 include:</p> 344<ul> 345<li>Removed support for Microsoft Internet Explorer</li> 346<li>Requires PHP 7.2 or newer</li> 347<li>Requires the openssl PHP extension</li> 348<li>Improved handling of system CA bundle and cacert.pem, falling back to Mozilla CA if needed</li> 349<li>Replace "master/slave" terms with "primary/replica"</li> 350<li>Add "NOT LIKE %...%" operator to Table search</li> 351<li>Add support for the Mroonga engine</li> 352<li>Add support for account locking</li> 353<li>Several fixes and improvements to the SQL parser library</li> 354</ul> 355<p>There are, of course, many more fixes and new features that you can see in the ChangeLog file included with this release or online at <a href="https://demo.phpmyadmin.net/master-config/index.php?route=/changelog">https://demo.phpmyadmin.net/master-config/index.php?route=/changelog</a></p> 356<p>Downloads are available now at <a href="https://phpmyadmin.net/downloads/">https://phpmyadmin.net/downloads/</a></p> 357<p>For the phpMyAdmin team, 358Isaac</p> 359 </div> 360 </article> 361 362 <article class="mb-4"> 363 <header> 364 <h2> 365 <a href="/news/2022/2/11/phpmyadmin-4910-and-513-are-released/">phpMyAdmin 4.9.10 and 5.1.3 are released</a> 366 </h2> 367 <p class="text-muted mb-3"> 368 <time datetime="2022-02-11T05:09:21+00:00" title="2022-02-11 05:09"> 369 <svg class="bi"><use href="#calendar-event"></use></svg> 370 February 11, 2022 371 </time> 372 </p> 373 </header> 374 <div> 375 <p>The phpMyAdmin team announces the release of versions 4.9.10 and 5.1.3.</p> 376<p>These versions primarily address a regression that caused the navigation pane to not function correctly when multiple pages of tables were shown.</p> 377<p>Version 5.1.3 includes a security hardening improvement. The issue, reported by Rafael Pedrero, could allow users to cause an error that would reveal the path on disk where phpMyAdmin is running from. 378We believe this requires the server to be running with display_errors on, which is not the recommended setting for a production environment.</p> 379<p>Version 5.1.3 includes a few other minor bug fixes and is recommended for all users.</p> 380<p>Note that version 4.9 is in extended security support only. Version 5.2.0 is in final testing and is expected to replace the 5.1 branch in the coming week or weeks, with no changes to required versions of PHP or database server.</p> 381<p>For the phpMyAdmin team, 382Isaac</p> 383 </div> 384 </article> 385 386 <article class="mb-4"> 387 <header> 388 <h2> 389 <a href="/news/2022/1/23/phpmyadmin-499-released/">phpMyAdmin 4.9.9 is released</a> 390 </h2> 391 <p class="text-muted mb-3"> 392 <time datetime="2022-01-23T04:42:05+00:00" title="2022-01-23 04:42"> 393 <svg class="bi"><use href="#calendar-event"></use></svg> 394 January 23, 2022 395 </time> 396 </p> 397 </header> 398 <div> 399 <p>Welcome to the release of phpMyAdmin version 4.9.9. This is a release to fix two issues with the 4.9.8 release. We apologize for the inconvenience.</p> 400<p>Fixed since phpMyAdmin 4.9.8:</p> 401<ul> 402<li>Fix a syntax error preventing use with PHP 5</li> 403<li>An error was shown regarding the new "hide_configuration_errors" directive when a controluser is set</li> 404</ul> 405<p>Fixed in phpMyAdmin 4.9.8:</p> 406<ul> 407<li>Fix for a user potentially being able to disable their two factor authentication (PMASA-2022-1)</li> 408<li>Add a new configuration directive $cfg['URLQueryEncryption'] to allow encrypting sensitive information in the URL to prevent disclosure. Thanks to Rich Grimes <a href="https://twitter.com/saltycoder">https://twitter.com/saltycoder</a> for suggesting this improvement</li> 409<li>Add a new configuration directive $cfg['Servers'][$i]['hide_connection_errors'] to allow hiding the full error message when a log on attempt fails, which can leak hostnames or IP addresses of the target database server. Thanks to Dr. Shuzhe Yang, Manager Security Governance at GLS IT Services for suggesting this improvement</li> 410</ul> 411<p>Note that the 5.1.2 has two known issues, the hide_connection_errors and an issue with the navigation pane. We are preparing fixes for those and will release version 5.1.3 separately.</p> 412<p>This is a reminder that phpMyAdmin 4.9 is in the long-term support phase where it will only get important security fixes and critical bug fixes. Users are suggested to migrate to version 5.1.</p> 413<p>Downloads are available now at https://phpmyadmin.net/downloads/</p> 414<p>For the phpMyAdmin team, 415Isaac</p> 416 </div> 417 </article> 418 419 <article class="mb-4"> 420 <header> 421 <h2> 422 <a href="/news/2022/1/22/phpmyadmin-498-512-and-520-rc1-are-released/">phpMyAdmin 4.9.8, 5.1.2, and 5.2.0-rc1 are released</a> 423 </h2> 424 <p class="text-muted mb-3"> 425 <time datetime="2022-01-22T01:01:34+00:00" title="2022-01-22 01:01"> 426 <svg class="bi"><use href="#calendar-event"></use></svg> 427 January 22, 2022 428 </time> 429 </p> 430 </header> 431 <div> 432 <p>The phpMyAdmin project announces several new releases:</p> 433<ul> 434<li>4.9.8, which fixes some security flaws</li> 435<li>5.1.2, which fixes some security flaws and contains many bug fixes including better PHP 8.0 and 8.1 compatibility</li> 436<li>5.2.0-rc1, a testing version introducing many new features</li> 437</ul> 438<h2>Security fixes (affected versions as noted)</h2> 439<p>A flaw was identified in how phpMyAdmin processes two factor authentication; a user could potentially manipulate their account to bypass two factor authentication in subsequent authentication sessions (PMASA-2022-1) (affects both 4.9 and 5.1).</p> 440<p>A series of weaknesses was identified allowing a malicious user to submit malicious information to present an XSS or HTML injection attack in the graphical setup page (PMASA-2022-2) (affects 5.1 only; not 4.9).</p> 441<p>In some scenarios, potentially sensitive information such as a the database name can be part of the URL. This can now be optionally encrypted. There are two new configuration directives relating to this improvement: <code>$cfg['URLQueryEncryption']</code> and <code>$cfg['URLQueryEncryptionSecretKey']</code>. This encryption can be enabled by setting URLQueryEncryption to true in y
441our <code>config.inc.php</code>. Thanks to Rich Grimes <a href="https://twitter.com/saltycoder">https://twitter.com/saltycoder</a> for suggesting this improvement (affects both 4.9 and 5.1).</p> 442<p>During a failed log on attempt, the error message reveals the target database server's hostname or IP address. This can reveal some information about the network infrastructure to an attacker. This information can now be suppressed through the <code>$cfg['Servers'][$i]['hide_connection_errors']</code> directive. Thanks to Dr. Shuzhe Yang, Manager Security Governance at GLS IT Services for suggesting this improvement (affects both 4.9 and 5.1).</p> 443<h2>Bug fixes (5.1.2 and 5.2.0-rc1)</h2> 444<ul> 445<li>Revert a changed to $cfg['CharTextareaRows'] allow values less than 7</li> 446<li>Fix encoding of enum and set values on edit value</li> 447<li>Fixed possible "Undefined index: clause_is_unique" error</li> 448<li>Fixed some situations where a user is logged out when working with more than one server</li> 449<li>Fixed a problem with assigning privileges to a user using the multiselect list when the database name has an underscore</li> 450<li>Enable cookie parameter "SameSite" when the PHP version is 7.3 or newer</li> 451<li>Correctly handle the removal of "innodb_file_format" in MariaDB and MySQL</li> 452</ul> 453<h2>New features (5.2.0-rc1)</h2> 454<ul> 455<li>Removed support for Microsoft Internet Explorer</li> 456<li>Requires PHP 7.2 or newer</li> 457<li>Requires the openssl PHP extension</li> 458<li>Improved handling of system CA bundle and cacert.pem, falling back to Mozilla CA if needed</li> 459<li>Replace "master/slave" terms with "primary/replica"</li> 460<li>Add "NOT LIKE %...%" operator to Table search</li> 461<li>Add support for the Mroonga engine</li> 462<li>Add support for account locking</li> 463<li>Several fixes and improvements to the SQL parser library</li> 464</ul> 465<p>There are, of course, many more fixes and new features that you can see in the ChangeLog file included with this release or online at <a href="https://demo.phpmyadmin.net/master-config/index.php?route=/changelog">https://demo.phpmyadmin.net/master-config/index.php?route=/changelog</a></p> 466<p>Downloads are available now at <a href="https://phpmyadmin.net/downloads/">https://phpmyadmin.net/downloads/</a></p> 467<p>Isaac and the phpMyAdmin team</p> 468 </div> 469 </article> 470 471 <article class="mb-4"> 472 <header> 473 <h2> 474 <a href="/news/2021/6/19/infrastructure-security-improvements/">Infrastructure security improvements</a> 475 </h2> 476 <p class="text-muted mb-3"> 477 <time datetime="2021-06-19T01:08:11+00:00" title="2021-06-19 01:08"> 478 <svg class="bi"><use href="#calendar-event"></use></svg> 479 June 19, 2021 480 </time> 481 </p> 482 </header> 483 <div> 484 <p>The infrastructure team would like to acknowledge the work of security researcher Joël Aviad Ossi from <a href="https://websec.nl/">pentest</a> in helping us improve some security weaknesses in our infrastructure. No user data was at risk nor were our downloads vulnerable at any time; this is simply a note of appreciation rather than a disclosure.</p> 485<p>Thanks Joël for your assistance. Anyone with security concerns about the project is always welcome to contact the team directly through the email link at <a href="https://www.phpmyadmin.net/security/">https://www.phpmyadmin.net/security/</a>.</p> 486 </div> 487 </article> 488 489 <article class="mb-4"> 490 <header> 491 <h2> 492 <a href="/news/2021/6/4/phpmyadmin-511-released/">phpMyAdmin 5.1.1 is released</a> 493 </h2> 494 <p class="text-muted mb-3"> 495 <time datetime="2021-06-04T04:36:40+00:00" title="2021-06-04 04:36"> 496 <svg class="bi"><use href="#calendar-event"></use></svg> 497 June 4, 2021 498 </time> 499 </p> 500 </header> 501 <div> 502 <p>We at the phpMyAdmin project are pleased to release phpMyAdmin 5.1.1, a bugfix release.</p> 503<p>There are many new bug fixes; a few highlights include:</p> 504<ul> 505<li>Fixes for several PHP errors</li> 506<li>Fixes for "$cfg['DefaultTabDatabase']" and other related configuration directives not working properly</li> 507<li>
507Fix Yaml export to quote strings even when they are numeric</li> 508<li>Fix TCPDF open_basedir issue due to internal guessing code from TCPDF</li> 509<li>Fix for quick search not working when using more than one configured server</li> 510<li>Fix datetime decimals displayed (.00000) after edit</li> 511<li>Fix new lines in text fields are doubled</li> 512<li>Fixed URL generation by removing un-needed <code>&amp;</code> escaping for & char</li> 513<li>Improvements for working with PHP 8.1</li> 514<li>Improved handling of adding a new user with the Percona database server</li> 515</ul> 516<p>There are, of course, many more fixes you can see in the ChangeLog file included with this release or online at https://demo.phpmyadmin.net/master-config/index.php?route=/changelog</p> 517<p>Downloads are available now at https://phpmyadmin.net/downloads/</p> 518<p>Isaac and the phpMyAdmin team</p> 519 </div> 520 </article> 521 522 <article class="mb-4"> 523 <header> 524 <h2> 525 <a href="/news/2021/2/24/phpmyadmin-510-released/">phpMyAdmin 5.1.0 is released</a> 526 </h2> 527 <p class="text-muted mb-3"> 528 <time datetime="2021-02-24T06:24:41+00:00" title="2021-02-24 06:24"> 529 <svg class="bi"><use href="#calendar-event"></use></svg> 530 February 24, 2021 531 </time> 532 </p> 533 </header> 534 <div> 535 <p>We at the phpMyAdmin project are pleased to publish phpMyAdmin 5.1.0.</p> 536<p>There are many new features and bug fixes; a few highlights include:</p> 537<ul> 538<li>Improve virtuality dropdown for MariaDB > 10.1</li> 539<li>Added an option to perform ALTER ONLINE (ALGORITHM=INPLACE) when editing a table structure</li> 540<li>Added ip2long transformation</li> 541<li>Improvements to linking to MySQL and MariaDB documentation</li> 542<li>Add "Preview SQL" option on Index dialog box when creating a new table</li> 543<li>Add a new vendor constant "CACHE_DIR" that defaults to "libraries/cache/" and store routing cache into this folder</li> 544<li>Add $cfg['CaptchaSiteVerifyURL'] for Google ReCaptcha siteVerifyUrl</li> 545<li>Add the password_hash PHP function as an option when inserting data</li> 546<li>Improvements to editing and displaying columns of the JSON data type.</li> 547<li>Added support for "SameSite=Strict" on cookies using configuration "$cfg['CookieSameSite']"</li> 548<li>Fixed AWS RDS IAM authentication doesn't work because pma_password is truncated</li> 549<li>Add config parameters to support third-party ReCaptcha v2 compatible APIs like hCaptcha</li> 550<li>Add $cfg['MysqlSslWarningSafeHosts'] to set the red text black when ssl is not used on a private network</li> 551<li>Export blobs as hex on JSON export</li> 552<li>Fix leading space not shown in a CHAR column when browsing a table</li> 553<li>Added a rename Button to use RENAME INDEX syntax of MySQL 5.7 (and MariaDB >= 10.5.2)</li> 554<li>Fixed missing option to enter TABLE specific permissions when the database name contains an "_" (underscore)</li> 555<li>Fixed a PHP notice "Trying to access array offset on value of type null" on Designer PDF export</li> 556<li>Fix for several PHP 8 warnings or errors, giving this release full compatibility with PHP 8</li> 557</ul> 558<p>There are, of course, many more fixes you can see in the ChangeLog file included with this release or online at https://demo.phpmyadmin.net/master-config/index.php?route=/changelog</p> 559<p>Downloads are available now at https://phpmyadmin.net/downloads/</p> 560<p>Isaac and the phpMyAdmin team</p> 561 </div> 562 </article> 563 564 565 <nav> 566 <ul class="pagination justify-content-start"> 567 <li class="page-item disabled"> 568 <a class="page-link" href=""> 569 <span aria-hidden="true"><<</span> 570 </a> 571 </li> 572 <li class="page-item disabled"> 573 <a class="page-link" href=""> 574 <span aria-hidden="true">«</span> 575 </a> 576 </li> 577 578 579 580 <li class="page-item active"> 581 <a class="page-link" href="/news/1/">1</a> 582 </li> 583 584 585 586 <li class="page-item"> 587 <a class="page-link" href="/news/2/">2</a> 588 </li> 589 590 591 592 <li class="page-item"> 593 <a class="page-link" href="/news/3/">3</a> 594 </li> 595 596 597 598 <li class="page-item"> 599 <a class="page-link" href="/news/4/">4</a> 600 </li> 601 602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 <li class="page-item disabled"><span class="page-link">â¦</span></li> 708 709 <li class="page-item"> 710 <a class="page-link" href="/news/55/">55</a> 711 </li> 712 713 <li class="page-item"> 714 <a class="page-link" href="/news/2/">
715 <span aria-hidden="true">»</span> 716 </a> 717 </li> 718 <li class="page-item"> 719 <a class="page-link" href="/news/55/"> 720 <span aria-hidden="true">>></span> 721 </a> 722 </li> 723 </ul> 724 </nav> 725 </div> 726 <div class="col-12 col-md-4"> 727 <p> 728 You can also follow us on 729 <a href="https://www.facebook.com/pmyadmin/" target="_blank" rel="noopener">Facebook</a> 730 or 731 <a href="https://x.com/phpmya" target="_blank" rel="noopener">Twitter</a>. 732 The news are also available in a 733 <a href="/news/feed/" target="_blank" rel="noopener">RSS feed</a>. 734 </p> 735 </div> 736</div> 737 738 </div> 739 </main> 740 741 <div class="modal modal-lg fade" id="downloadModal" tabindex="-1" aria-labelledby="downloadModalLabel" aria-hidden="true"> 742 <div class="modal-dialog"> 743 <div class="modal-content"> 744 <div class="modal-header"> 745 <h3 class="modal-title fs-5" id="downloadModalLabel">Thank you for downloading phpMyAdmin</h3> 746 <button type="button" class="btn-close" data-bs-dismiss="modal" aria-label="Close"></button> 747 </div> 748 <div class="modal-body"> 749 <p>Your download should start automatically. If not, please <a id="dl-link" href="#" download>click here</a>.</p> 750 751 <h4 class="modal-title fs-5">Verify the downloaded file</h4> 752 <p>Please take additional steps to verify that the file you have downloaded is not corrupted. You can verify it using the following methods:</p> 753 <ul> 754 <li id="pgp-container">Verify its <a id="pgp-link" href="#" download>PGP signature</a>, see the <a href="https://docs.phpmyadmin.net/en/latest/setup.html#verifying-phpmyadmin-releases">Verifying phpMyAdmin releases</a> chapter for more information.</li> 755 <li>Check that the file's SHA256 hash matches <code id="sha256-code"></code></li> 756 </ul> 757 758 <h4 class="modal-title fs-5">Support phpMyAdmin's development</h4> 759 <p>phpMyAdmin relies on the work of volunteers and contractors. You can help improve phpMyAdmin by <a href="/donate/">donating to our project</a>. Every donation counts!</p> 760 <p class="mb-0">We also have a <a href="/sponsors/#rules">sponsorship program</a> for corporates who are willing to contribute more and receive benefits such as logo placement.</p> 761 </div> 762 <div class="modal-footer"> 763 <button type="button" class="btn btn-secondary" data-bs-dismiss="modal">Close</button> 764 <a href="/donate/" class="btn btn-primary">Donate to phpMyAdmin</a> 765 </div> 766 </div> 767 </div> 768 </div> 769 770 <footer class="py-3 border-top"> 771 <div class="container d-flex flex-wrap justify-content-between align-items-center"> 772 <p class="col-12 col-md-6 mb-0 text-body-secondary text-center text-md-start">© 2003 - 2026 <a href="/team/">phpMyAdmin contributors</a></p> 773 774 <ul class="nav col-12 col-md-6 justify-content-center justify-content-md-end mt-2 mt-md-0"> 775 <li class="nav-item"><a href="/license/" class="nav-link px-2 text-body-secondary">License</a></li> 776 <li class="nav-item"><a href="/donate/" class="nav-link px-2 text-body-secondary">Donate</a></li> 777 <li class="nav-item"><a href="/about-website/" class="nav-link px-2 text-body-secondary">About</a></li> 778 </ul> 779 </div> 780 </footer> 781 782 <!-- Google Analytics --> 783
783<script> 784 (function(i,s,o,g,r,a,m){i['GoogleAnalyticsObject']=r;i[r]=i[r]||function(){ 785 (i[r].q=i[r].q||[]).push(arguments)},i[r].l=1*new Date();a=s.createElement(o), 786 m=s.getElementsByTagName(o)[0];a.async=1;a.src=g;m.parentNode.insertBefore(a,m) 787 })(window,document,'script','https://www.google-analytics.com/analytics.js','ga'); 788 if (ga) { 789 ga('create', 'UA-2718724-14', 'auto'); 790 ga('send', 'pageview'); 791 } 792 </script>
792 793 </body> 794</html>
Line numbers count LF bytes from the start of the resource, as the search results do. Vendor segments are library code the classifier recognised; they are stored but not indexed. Bytes are shown as Latin1 characters, one per byte.