Oracle Mysql Server vulnerabilities

269 known vulnerabilities affecting oracle/mysql_server.

Total CVEs
269
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH18MEDIUM228LOW16

Vulnerabilities

Page 3 of 14
CVE-2025-21584MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-21584 [MEDIUM] CWE-732 CVE-2025-21584: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can re
nvd
CVE-2025-21588MEDIUMCVSS 4.9≥ 8.4.0, ≤ 8.4.4≥ 9.0.0, ≤ 9.2.02025-04-15
CVE-2025-21588 [MEDIUM] CWE-284 CVE-2025-21588: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versi Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauth
nvd
CVE-2025-30705MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30705 [MEDIUM] CWE-400 CVE-2025-30705: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versio Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can res
nvd
CVE-2025-30693MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30693 [MEDIUM] CWE-284 CVE-2025-30693: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result
nvd
CVE-2025-30704MEDIUMCVSS 4.4≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30704 [MEDIUM] CWE-400 CVE-2025-30704: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vul
nvd
CVE-2025-30715MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30715 [MEDIUM] CWE-400 CVE-2025-30715: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulne
nvd
CVE-2025-30681LOWCVSS 2.7≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30681 [LOW] CWE-400 CVE-2025-30681: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Support Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability c
nvd
CVE-2025-30703LOWCVSS 2.7≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30703 [LOW] CWE-863 CVE-2025-30703: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in
nvd
CVE-2025-21521HIGHCVSS 7.5≥ 8.0.0, ≤ 8.0.39≥ 8.4.0, ≤ 8.4.2+1 more2025-01-21
CVE-2025-21521 [HIGH] CWE-770 CVE-2025-21521: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supp Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this
nvd
CVE-2025-21531MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21531 [MEDIUM] CWE-770 CVE-2025-21531: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21555MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21555 [MEDIUM] CWE-863 CVE-2025-21555: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21492MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.36v8.4.02025-01-21
CVE-2025-21492 [MEDIUM] CWE-770 CVE-2025-21492: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.36 and prior and 8.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in u
nvd
CVE-2025-21566MEDIUMCVSS 6.5≥ 9.0.0, ≤ 9.1.02025-01-21
CVE-2025-21566 [MEDIUM] CWE-732 CVE-2025-21566: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized
nvd
CVE-2025-21497MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21497 [MEDIUM] CWE-346 CVE-2025-21497: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21559MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21559 [MEDIUM] CWE-306 CVE-2025-21559: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21525MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.39≥ 8.4.0, ≤ 8.4.2+1 more2025-01-21
CVE-2025-21525 [MEDIUM] CWE-770 CVE-2025-21525: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerab
nvd
CVE-2025-21540MEDIUMCVSS 5.4≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21540 [MEDIUM] CWE-863 CVE-2025-21540: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks
nvd
CVE-2025-21503MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21503 [MEDIUM] CWE-770 CVE-2025-21503: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21523MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21523 [MEDIUM] CWE-732 CVE-2025-21523: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21536MEDIUMCVSS 4.9≥ 8.0.0, ≤ 8.0.39≥ 8.4.0, ≤ 8.4.2+1 more2025-01-21
CVE-2025-21536 [MEDIUM] CWE-770 CVE-2025-21536: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.39 and prior, 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vu
nvd