CVE-2026-25878: FroshAdminer Adminer UI is accessible without admin session
Unauthenticated access to Adminer UI
References
- github.com/FriendsOfShopware/FroshPlatformAdminer
- github.com/FriendsOfShopware/FroshPlatformAdminer/commit/c4dd6c3462af178b3a7d146d3c651c2c253e902b
- github.com/FriendsOfShopware/FroshPlatformAdminer/releases/tag/2.2.1
- github.com/FriendsOfShopware/FroshPlatformAdminer/security/advisories/GHSA-f339-246p-wwjp
- github.com/advisories/GHSA-f339-246p-wwjp
- nvd.nist.gov/vuln/detail/CVE-2026-25878
Code Behaviors & Features
Detect and mitigate CVE-2026-25878 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →