Oracle Mysql Server vulnerabilities
334 known vulnerabilities affecting oracle/mysql_server.
Total CVEs
334
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH22MEDIUM285LOW20
Vulnerabilities
Page 6 of 17
CVE-2022-21380P4MEDIUMCVSS 6.3≥ 7.4.0, ≤ 7.4.34≥ 7.5.0, ≤ 7.5.24+2 more2022-01-19
CVE-2022-21380 [MEDIUM] CVE-2022-21380: Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.34 and prior, 7.5.24 and prior, 7.6.20 and prior and 8.0.27 and prior. Difficult to exploit vulnerability allows high privileged attacker with access to the physical communication segment attached to the hardware where the My
nvd
CVE-2022-21528P4MEDIUMCVSS 5.5≤ 8.0.292022-07-19
CVE-2022-21528 [MEDIUM] CVE-2022-21528: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2025-30693P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30693 [MEDIUM] CWE-284 CVE-2025-30693: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result i
nvd
CVE-2025-30695P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.41≥ 8.4.0, ≤ 8.4.4+1 more2025-04-15
CVE-2025-30695 [MEDIUM] CWE-284 CVE-2025-30695: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result i
nvd
CVE-2026-21929P4MEDIUMCVSS 5.3≥ 9.0.0, ≤ 9.5.02026-01-20
CVE-2026-21929 [MEDIUM] CVE-2026-21929: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported ve
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 9.0.0-9.5.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cau
nvd
CVE-2017-3312P4MEDIUMCVSS 6.7v5.5.53 and earlierv5.6.34 and earlier+1 more2017-01-27
CVE-2017-3312 [MEDIUM] CVE-2017-3312: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Suppo
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Success
nvd
CVE-2026-60747P4MEDIUMCVSS 6.2≥ 8.4.0, ≤ 8.4.10v9.7.0+1 more2026-07-21
CVE-2026-60747 [MEDIUM] CWE-400 CVE-2026-60747: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where
nvd
CVE-2022-21509P4MEDIUMCVSS 5.5≤ 8.0.292022-07-19
CVE-2022-21509 [MEDIUM] CVE-2022-21509: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2022-21527P4MEDIUMCVSS 5.5≤ 8.0.292022-07-19
CVE-2022-21527 [MEDIUM] CVE-2022-21527: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21929P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.322023-04-18
CVE-2023-21929 [MEDIUM] CVE-2023-21929: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to ca
nvd
CVE-2024-21015P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.34≥ 8.1.0, ≤ 8.3.02024-04-16
CVE-2024-21015 [MEDIUM] CVE-2024-21015: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versi
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.34 and prior and 8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauth
nvd
CVE-2025-21555P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21555 [MEDIUM] CWE-863 CVE-2025-21555: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21559P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21559 [MEDIUM] CWE-306 CVE-2025-21559: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2025-21497P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.40≥ 8.4.0, ≤ 8.4.3+1 more2025-01-21
CVE-2025-21497 [MEDIUM] CWE-346 CVE-2025-21497: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.40 and prior, 8.4.3 and prior and 9.1.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability
nvd
CVE-2022-21539P4MEDIUMCVSS 5.0≤ 8.0.292022-07-19
CVE-2022-21539 [MEDIUM] CVE-2022-21539: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions th
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized update, insert o
nvd
CVE-2022-21440P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.282022-04-19
CVE-2022-21440 [MEDIUM] CVE-2022-21440: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.28 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2022-21459P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.282022-04-19
CVE-2022-21459 [MEDIUM] CVE-2022-21459: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.28 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21872P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.292023-01-18
CVE-2023-21872 [MEDIUM] CVE-2023-21872: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability
nvd
CVE-2023-21869P4MEDIUMCVSS 5.5≥ 8.0.0, ≤ 8.0.312023-01-18
CVE-2023-21869 [MEDIUM] CVE-2023-21869: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a
nvd
CVE-2021-2385P4MEDIUMCVSS 5.0≥ 5.7.0, ≤ 5.7.34≥ 8.0.0, ≤ 8.0.252021-07-21
CVE-2021-2385 [MEDIUM] CVE-2021-2385: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supporte
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 5.7.34 and prior and 8.0.25 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result
nvd