Dre Armeda of Sucuri Security has recommended against using the WP-phpmyadmin plugin for security reasons. According to Armeda his security team has seen multiple sites hacked via the plugin and are still investigating the issue. The plugin was developed four years ago to incorporate phpMyAdmin directly into the WordPress Dashboard.
The plugin is currently not in the WordPress.org Plugin Directory as it was removed for potentially exposing server information when using the plugin. While no one can download the plugin now, its still possible you could be running the plugin.
Armeda also recommends Sucuri’s sitecheck tool to determine whether your site is currently compromised, by WP-phpmyadmin or anything else.
Have you ever use the WP-phpmyadmin plugin? Have you ever run into a security issue on your site that was introduced by a plugin?