CVE-2025-50081

Severity
3.1LOW
EPSS
0.1%
top 81.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 15
Latest updateOct 6

Description

Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to s

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:NExploitability: 0.5 | Impact: 2.5

Affected Packages5 packages

CVEListV5oracle_corporation/mysql_client8.0.08.0.42+2
NVDoracle/mysql8.0.08.0.42+2
CVEListV5oracle_corporation/mysql_cluster7.6.07.6.34+3
Ubuntumysql-8.0< 8.0.43-0ubuntu0.22.04.1+2
Ubuntumysql-8.4< 8.4.6-0ubuntu1

🔴Vulnerability Details

3
OSV
CVE-2025-50081: Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump)2025-07-15
GHSA
GHSA-rm7f-f74m-5fjv: Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump)2025-07-15
CVEList
CVE-2025-50081: Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump)2025-07-15

📋Vendor Advisories

6
Ubuntu
MySQL vulnerabilities2025-10-06
Ubuntu
MySQL vulnerabilities2025-08-13
Oracle
Oracle Oracle MySQL Risk Matrix: Client: mysqldump — CVE-2025-500812025-07-15
Red Hat
mysql: mysqldump unspecified vulnerability (CPU Jul 2025)2025-07-15
Microsoft
Vulnerability in the MySQL Server product of Oracle MySQL2025-07-08