Oracle Corporation Mysql Server vulnerabilities
1,036 known vulnerabilities affecting oracle_corporation/mysql_server.
Total CVEs
1,036
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
HIGH34MEDIUM934LOW68
Vulnerabilities
Page 1 of 52
CVE-2022-21589P2MEDIUMCVSS 4.3Exploitedv5.7.39 and priorv8.0.16 and prior2022-10-18
CVE-2022-21589 [MEDIUM] CVE-2022-21589: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges).
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 5.7.39 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability ca
nvd
CVE-2021-2429P3MEDIUMCVSS 5.9v8.0.25 and prior2021-07-21
CVE-2021-2429 [MEDIUM] CVE-2021-2429: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions th
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.25 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause
nvd
CVE-2026-60163P3HIGHCVSS 8.4v8.4.0-8.4.10v9.7.0-9.7.12026-07-21
CVE-2026-60163 [HIGH] CWE-284 CVE-2026-60163: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group R
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastru
nvd
CVE-2026-60315P3HIGHCVSS 8.2v8.4.0-8.4.10v9.7.0-9.7.12026-07-21
CVE-2026-60315 [HIGH] CWE-200 CVE-2026-60315: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugi
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols
nvd
CVE-2019-2632P3HIGHCVSS 7.5v5.7.25 and priorv8.0.15 and prior2019-04-23
CVE-2019-2632 [HIGH] CVE-2019-2632: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth).
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth). Supported versions that are affected are 5.7.25 and prior and 8.0.15 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can r
nvd
CVE-2026-61094P3HIGHCVSS 7.2v8.4.0-8.4.10v9.7.0-9.7.12026-07-21
CVE-2026-61094 [HIGH] CWE-269 CVE-2026-61094: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replica
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoco
nvd
CVE-2026-60316P3HIGHCVSS 7.2v8.4.0-8.4.10v9.7.0-9.7.12026-07-21
CVE-2026-60316 [HIGH] CWE-284 CVE-2026-60316: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugi
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols
nvd
CVE-2018-2696P3HIGHCVSS 7.5v5.6.38 and priorv5.7.20 and prior2018-01-18
CVE-2018-2696 [HIGH] CVE-2018-2696: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Security : Privi
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Security : Privileges). Supported versions that are affected are 5.6.38 and prior and 5.7.20 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerabilit
nvd
CVE-2021-35583P3HIGHCVSS 7.5v8.0.25 and prior2021-10-20
CVE-2021-35583 [HIGH] CVE-2021-35583: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Windows). Supported ve
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Windows). Supported versions that are affected are 8.0.25 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to
nvd
CVE-2017-10155P3HIGHCVSS 7.5v5.6.37 and earlierv5.7.19 and earlier2017-10-19
CVE-2017-10155 [HIGH] CVE-2017-10155: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Pluggable Auth).
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Pluggable Auth). Supported versions that are affected are 5.6.37 and earlier and 5.7.19 and earlier. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability c
nvd
CVE-2017-3450P3HIGHCVSS 7.5v5.6.35 and earlierv5.7.17 and earlier2017-04-24
CVE-2017-3450 [HIGH] CVE-2017-3450: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Suppo
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Memcached). Supported versions that are affected are 5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can r
nvd
CVE-2018-3155P3HIGHCVSS 7.7v5.7.23 and priorv8.0.12 and prior2018-10-17
CVE-2018-3155 [HIGH] CVE-2018-3155: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supporte
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. While the vulnerability is in MySQL Server, attacks may
nvd
CVE-2017-3329P3HIGHCVSS 7.5v5.5.54 and earlierv5.6.35 and earlier+1 more2017-04-24
CVE-2017-3329 [HIGH] CVE-2017-3329: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Thread Pooling).
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Thread Pooling). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of
nvd
CVE-2017-3309P3HIGHCVSS 7.7v5.5.54 and earlierv5.6.35 and earlier+1 more2017-04-24
CVE-2017-3309 [HIGH] CVE-2017-3309: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Suppo
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. While the vulnerability is
nvd
CVE-2017-3308P3HIGHCVSS 7.7v5.5.54 and earlierv5.6.35 and earlier+1 more2017-04-24
CVE-2017-3308 [HIGH] CVE-2017-3308: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported v
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are affected are 5.5.54 and earlier, 5.6.35 and earlier and 5.7.17 and earlier. Easily "exploitable" vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. While the vulnerability is in MyS
nvd
CVE-2019-2822P3HIGHCVSS 7.5v8.0.16 and prior2019-07-23
CVE-2019-2822 [HIGH] CVE-2019-2822: Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Shell: Admin / InnoDB Clu
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Shell: Admin / InnoDB Cluster). Supported versions that are affected are 8.0.16 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks require human interaction from a person
nvd
CVE-2020-14663P3HIGHCVSS 7.2v8.0.20 and prior2020-07-15
CVE-2020-14663 [HIGH] CVE-2020-14663: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges).
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover o
nvd
CVE-2020-14678P3HIGHCVSS 7.2v8.0.20 and prior2020-07-15
CVE-2020-14678 [HIGH] CVE-2020-14678: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges).
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover o
nvd
CVE-2020-14697P3HIGHCVSS 7.2v8.0.20 and prior2020-07-15
CVE-2020-14697 [HIGH] CVE-2020-14697: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges).
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover o
nvd
CVE-2020-14828P3HIGHCVSS 7.2v8.0.21 and prior2020-10-21
CVE-2020-14828 [HIGH] CVE-2020-14828: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versio
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover of MySQL Server. C
nvd
1 / 52Next →