This release includes 1 security fix for security teams reviewing exposed deployments.
Published 5d
Relational Databases
✓ No known CVEs patched
This release patches 1 known CVE
Topics
database
mssql
mysql
php
postgresql
sqlite
Affected surfaces
auth
Summary
AI summaryUpdates Compile, GHSA-fr74-9mf9-gf44, and Login across a mixed release.
Full changelog
- Ignore invalid X-Forwarded-Prefix (GHSA-fr74-9mf9-gf44)
- Login: Allow :/_ in server (bug #1305, regression from 5.5.0)
- Compile: Valid UTF-8 (bug #1113, #1213)
- Compile: Replace LZW with deflate compression
- Add missing translations
- Syntax highlighting: Update MySQL, MariaDB, SQLite, PostgreSQL
- Support disabled set_time_limit() and ini_set() (bug #1288)
- PostgreSQL: Log in with empty server (bug #1304, regression from 5.5.0)
Security Fixes
- GHSA-fr74-9mf9-gf44 — Ignore invalid X-Forwarded-Prefix header to prevent request smuggling
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Adminer
Database management in a single PHP file. Available for MySQL, MariaDB, PostgreSQL, SQLite, MS SQL, Oracle, Elasticsearch, MongoDB and others.
Related context
Related tools
Beta — feedback welcome: [email protected]