cbcvebase.

Oracle Mysql Server vulnerabilities

334 known vulnerabilities affecting oracle/mysql_server.

Total CVEs
334
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH22MEDIUM285LOW20

Vulnerabilities

Page 16 of 17
CVE-2023-21940P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.322023-04-18
CVE-2023-21940 [MEDIUM] CVE-2023-21940: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.32 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthor
nvd
CVE-2023-22005P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.332023-07-18
CVE-2023-22005 [MEDIUM] CVE-2023-22005: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Support Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.33 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized abi
nvd
CVE-2023-22033P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.332023-07-18
CVE-2023-22033 [MEDIUM] CVE-2023-22033: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.33 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause
nvd
CVE-2024-20984P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.35v8.2.02024-02-17
CVE-2024-20984 [MEDIUM] CVE-2024-20984: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server : Security : Firewall). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server : Security : Firewall). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2024-21013P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.36≥ 8.1.0, ≤ 8.3.02024-04-16
CVE-2024-21013 [MEDIUM] CWE-400 CVE-2024-21013: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can
nvd
CVE-2024-21008P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.36≥ 8.1.0, ≤ 8.3.02024-04-16
CVE-2024-21008 [MEDIUM] CWE-400 CVE-2024-21008: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can
nvd
CVE-2025-21519P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21519 [MEDIUM] CWE-863 CVE-2025-21519: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attac
nvd
CVE-2025-21493P4MEDIUMCVSS 4.4≥ 8.4.0, ≤ 8.4.3≥ 9.0.0, ≤ 9.1.02025-01-21
CVE-2025-21493 [MEDIUM] CWE-770 CVE-2025-21493: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.4.3 and prior and 9.1.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnera
nvd
CVE-2024-20968P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.34v8.1.02024-02-17
CVE-2024-20968 [MEDIUM] CWE-770 CVE-2024-20968: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported v Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8.0.34 and prior and 8.1.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in un
nvd
CVE-2025-30704P4MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30704 [MEDIUM] CWE-400 CVE-2025-30704: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vul
nvd
CVE-2021-2374P4MEDIUMCVSS 4.1≥ 8.0.0, ≤ 8.0.252021-07-21
CVE-2021-2374 [MEDIUM] CVE-2021-2374: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions th Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.25 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized
nvd
CVE-2017-3318P4MEDIUMCVSS 4.0v5.5.53 and earlierv5.6.34 and earlier+1 more2017-01-27
CVE-2017-3318 [MEDIUM] CVE-2017-3318: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Error Handling). Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Error Handling). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Su
nvd
CVE-2026-60191P4MEDIUMCVSS 4.1≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60191 [MEDIUM] CWE-284 CVE-2026-60191: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure whe
nvd
CVE-2024-21000P4LOWCVSS 3.8≥ 8.0.0, ≤ 8.0.36v8.3.02024-04-16
CVE-2024-21000 [LOW] CVE-2024-21000: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.36 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can r
nvd
CVE-2025-21546P4LOWCVSS 3.8≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21546 [LOW] CWE-863 CVE-2025-21546: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of
nvd
CVE-2025-21494P4MEDIUMCVSS 4.1≥ 8.0.0, ≤ 8.0.39≥ 8.4.0, ≤ 8.4.2+1 more2025-01-21
CVE-2025-21494 [MEDIUM] CWE-770 CVE-2025-21494: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server
nvd
CVE-2017-3319P4LOWCVSS 3.1v5.7.16 and earlier2017-01-27
CVE-2017-3319 [LOW] CWE-200 CVE-2017-3319: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: X Plugin). Suppor Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: X Plugin). Supported versions that are affected are 5.7.16 and earlier. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthori
nvd
CVE-2026-61096P4LOWCVSS 2.9≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-61096 [LOW] CWE-284 CVE-2026-61096: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggab Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure whe
nvd
CVE-2025-30721P4MEDIUMCVSS 4.0≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30721 [MEDIUM] CVE-2025-30721: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versi Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human int
nvd
CVE-2023-22048P4LOWCVSS 3.1≥ 8.0.0, ≤ 8.0.332023-07-18
CVE-2023-22048 [LOW] CVE-2023-22048: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supp Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are 8.0.33 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read
nvd
Oracle Mysql Server vulnerabilities | cvebase