Hello everybody,
phpmyadmin-2.6.4-pl1.pl and all previous version contain a security hole.
Due to an error in grab_globals.lib.php it's possible to execute the command
'subform[][redirect]' in any form to see the contents of files outside the webroot.
I suggest to upgrade this as soon as possible as this is a quite serious
security hole.
See Sig!
