{ "schema_version": "1.4.0", "id": "GHSA-x3hp-v67w-2vc2", "modified": "2025-04-09T03:58:52Z", "published": "2022-05-02T00:08:54Z", "aliases": [ "CVE-2008-4326" ], "details": "The PMA_escapeJsString function in libraries/js_escape.lib.php in phpMyAdmin before 2.11.9.2, when Internet Explorer is used, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via a NUL byte inside a \"