cbcvebase.

Oracle MySQL vulnerabilities

1,330 known vulnerabilities affecting oracle/mysql.

Total CVEs
1,330
CISA KEV
0
Public exploits
50
Exploited in wild
2
Severity breakdown
CRITICAL12HIGH71MEDIUM1066LOW181

Vulnerabilities

Page 24 of 67
CVE-2021-35624P4MEDIUMCVSS 4.9≥ 5.7.0, ≤ 5.7.35≥ 8.0.0, ≤ 8.0.262021-10-20
CVE-2021-35624 [MEDIUM] CVE-2021-35624: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 5.7.35 and prior and 8.0.26 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability c
nvd
CVE-2013-1523P4MEDIUMCVSS 4.6≥ 5.5.0, ≤ 5.5.29≥ 5.6.0, ≤ 5.6.102013-04-17
CVE-2013-1523 [MEDIUM] CVE-2013-1523: Unspecified vulnerability in Oracle MySQL 5.5.29 and earlier and 5.6.10 and earlier allows remote au Unspecified vulnerability in Oracle MySQL 5.5.29 and earlier and 5.6.10 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Server Optimizer.
nvd
CVE-2018-2813P4MEDIUMCVSS 4.3≥ 5.5.0, ≤ 5.5.59≥ 5.6.0, ≤ 5.6.39+1 more2018-04-19
CVE-2018-2813 [MEDIUM] CVE-2018-2813: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported v Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabilit
nvd
CVE-2017-3464P4MEDIUMCVSS 4.3≥ 5.5.0, ≤ 5.5.54≥ 5.6.0, ≤ 5.6.35+1 more2017-04-24
CVE-2017-3464 [MEDIUM] CVE-2017-3464: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported v Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vuln
nvd
CVE-2017-3651P4MEDIUMCVSS 4.3≥ 5.5.0, ≤ 5.5.56≥ 5.6.0, ≤ 5.6.36+1 more2017-08-08
CVE-2017-3651 [MEDIUM] CVE-2017-3651: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client mysqldump). Suppor Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client mysqldump). Supported versions that are affected are 5.5.56 and earlier, 5.6.36 and earlier and 5.7.18 and earlier. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this v
nvd
CVE-2025-50087P4MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.42≥ 8.4.0, ≤ 8.4.5+1 more2025-07-15
CVE-2025-50087 [MEDIUM] CWE-284 CVE-2025-50087: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability c
nvd
CVE-2015-4816P4MEDIUMCVSS 4.0≥ 5.5.0, ≤ 5.5.442015-10-21
CVE-2015-4816 [MEDIUM] CVE-2015-4816: Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier allows remote authenticated user Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB.
nvd
CVE-2015-0391P4MEDIUMCVSS 4.0≥ 5.5.0, ≤ 5.5.38≥ 5.6.0, ≤ 5.6.192015-01-21
CVE-2015-0391 [MEDIUM] CVE-2015-0391: Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect availability via vectors related to DDL.
nvd
CVE-2012-0113P4MEDIUMCVSS 5.5v5.1v5.1.1+80 more2012-01-18
CVE-2012-0113 [MEDIUM] CVE-2012-0113: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated users to affect confidentiality and availability via unknown vectors, a different vulnerability than CVE-2012-0118.
nvd
CVE-2017-3291P4MEDIUMCVSS 6.3≥ 5.5.0, ≤ 5.5.53≥ 5.6.0, ≤ 5.6.34+1 more2017-01-27
CVE-2017-3291 [MEDIUM] CVE-2017-3291: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Succes
nvd
CVE-2012-0486P4MEDIUMCVSS 5.0v5.5.0v5.5.1+20 more2012-01-18
CVE-2012-0486 [MEDIUM] CVE-2012-0486: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenti Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0117, CVE-2012-0487, CVE-2012-0488, CVE-2012-0489, CVE-2012-0491, CVE-2012-0493, and CVE-2012-0495.
nvd
CVE-2018-3276P4MEDIUMCVSS 4.9≥ 5.6.0, ≤ 5.6.41≥ 5.7.0, ≤ 5.7.23+1 more2018-10-17
CVE-2018-3276 [MEDIUM] CVE-2018-3276: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulne
nvd
CVE-2018-3278P4MEDIUMCVSS 4.9≥ 5.6.0, ≤ 5.6.41≥ 5.7.0, ≤ 5.7.23+1 more2018-10-17
CVE-2018-3278 [MEDIUM] CVE-2018-3278: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: RBR). Supported v Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: RBR). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabili
nvd
CVE-2018-3077P4MEDIUMCVSS 4.9≥ 5.7.0, ≤ 5.7.22≥ 8.0.0, ≤ 8.0.112018-07-18
CVE-2018-3077 [MEDIUM] CVE-2018-3077: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported v Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.7.22 and prior and 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in u
nvd
CVE-2018-3054P4MEDIUMCVSS 4.9≥ 5.7.0, ≤ 5.7.22≥ 8.0.0, ≤ 8.0.112018-07-18
CVE-2018-3054 [MEDIUM] CVE-2018-3054: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported v Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.7.22 and prior and 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in u
nvd
CVE-2018-3161P4MEDIUMCVSS 4.9≥ 5.7.0, ≤ 5.7.23≥ 8.0.0, ≤ 8.0.122018-10-17
CVE-2018-3161 [MEDIUM] CVE-2018-3161: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Partition). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Partition). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can resul
nvd
CVE-2011-2262P4MEDIUMCVSS 5.0v5.1v5.1.1+90 more2012-01-18
CVE-2011-2262 [MEDIUM] CVE-2011-2262: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote attackers to affect availability via unknown vectors.
nvd
CVE-2019-2531P4MEDIUMCVSS 4.9≥ 5.6.0, ≤ 5.6.42≥ 5.7.0, ≤ 5.7.24+1 more2019-01-16
CVE-2019-2531 [MEDIUM] CVE-2019-2531: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Sup Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vul
nvd
CVE-2019-2528P4MEDIUMCVSS 4.9≥ 5.7.0, ≤ 5.7.24≥ 8.0.0, ≤ 8.0.132019-01-16
CVE-2019-2528 [MEDIUM] CVE-2019-2528: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Partition). Suppo Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Partition). Supported versions that are affected are 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can resul
nvd
CVE-2019-2486P4MEDIUMCVSS 4.9≥ 5.7.0, ≤ 5.7.24≥ 8.0.0, ≤ 8.0.132019-01-16
CVE-2019-2486 [MEDIUM] CVE-2019-2486: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privile Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Security: Privileges). Supported versions that are affected are 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabilit
nvd
Oracle MySQL vulnerabilities | cvebase