In phpMyAdmin before 4.8.4, an XSS vulnerability was found in the navigation tree, where an attacker can deliver a payload to a user through a crafted database/table name.
https://www.phpmyadmin.net/security/PMASA-2018-8/
https://security.gentoo.org/glsa/201904-16
https://lists.debian.org/debian-lts-announce/2019/02/msg00003.html