Oracle Mysql Server vulnerabilities
334 known vulnerabilities affecting oracle/mysql_server.
Total CVEs
334
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH22MEDIUM285LOW20
Vulnerabilities
Page 15 of 17
CVE-2023-21863P4MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.312023-01-18
CVE-2023-21863 [MEDIUM] CVE-2023-21863: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21873P4MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.312023-01-18
CVE-2023-21873 [MEDIUM] CVE-2023-21873: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21867P4MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.312023-01-18
CVE-2023-21867 [MEDIUM] CVE-2023-21867: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21870P4MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.312023-01-18
CVE-2023-21870 [MEDIUM] CVE-2023-21870: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21836P4MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.312023-01-18
CVE-2023-21836 [MEDIUM] CVE-2023-21836: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versi
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to ca
nvd
CVE-2021-22898P4LOWCVSS 3.1fixed in 5.7.34≥ 8.0.15, < 8.0.252021-06-11
CVE-2021-22898 [LOW] CWE-200 CVE-2021-22898: curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, kn
curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the se
nvd
CVE-2026-60177P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60177 [MEDIUM] CWE-400 CVE-2026-60177: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone P
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pr
nvd
CVE-2026-60182P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60182 [MEDIUM] CWE-400 CVE-2026-60182: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone P
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pr
nvd
CVE-2023-22058P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.332023-07-18
CVE-2023-22058 [MEDIUM] CVE-2023-22058: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.33 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to
nvd
CVE-2026-60186P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60186 [MEDIUM] CWE-400 CVE-2026-60186: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group R
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via
nvd
CVE-2026-60185P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60185 [MEDIUM] CWE-400 CVE-2026-60185: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pro
nvd
CVE-2026-47012P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-47012 [MEDIUM] CWE-400 CVE-2026-47012: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Optimiz
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple proto
nvd
CVE-2026-60187P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60187 [MEDIUM] CWE-400 CVE-2026-60187: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pro
nvd
CVE-2026-60184P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60184 [MEDIUM] CWE-400 CVE-2026-60184: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pro
nvd
CVE-2026-60189P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60189 [MEDIUM] CWE-284 CVE-2026-60189: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pro
nvd
CVE-2026-46936P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-46936 [MEDIUM] CWE-284 CVE-2026-46936: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: DDL).
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to
nvd
CVE-2026-60188P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60188 [MEDIUM] CWE-284 CVE-2026-60188: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple pro
nvd
CVE-2016-8327P4MEDIUMCVSS 4.4v5.6.34 and earlierv5.7.16 and earlier2017-01-27
CVE-2016-8327 [MEDIUM] CVE-2016-8327: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Sup
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability c
nvd
CVE-2022-21522P4MEDIUMCVSS 4.4≤ 8.0.292022-07-19
CVE-2022-21522 [MEDIUM] CVE-2022-21522: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Sup
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.29 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthoriz
nvd
CVE-2023-21947P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.322023-04-18
CVE-2023-21947 [MEDIUM] CVE-2023-21947: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services).
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.32 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthor
nvd