Vulnerability index

Browse CVEs

94 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2026-48163 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11… MariaDB 10.6.27 / 10.11.18+ Fix from $1,9502026-06-12 HIGH 7.2 CVE-2026-48165 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11… MariaDB 10.6.27 / 10.11.18+ Fix from $1,9502026-06-12 CRITICAL 9.1 CVE-2026-44172 MariaDB server is a community developed fork of MySQL server. In versions 3.3.18 and 3.4.8, an application that was taking non-validated user input, … MariaDB Mitigation only Fix from $2,3002026-06-12 MEDIUM 5.3 CVE-2026-44173 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11… MariaDB 10.6.26 / 10.11.17+ Fix from $1,6002026-06-12 CRITICAL 9.8 CVE-2026-44170 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11… MariaDB 10.6.26 / 10.11.17+ Fix from $2,3002026-06-12 HIGH 8.0 CVE-2026-44168 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11… MariaDB 10.6.26 / 10.11.17+ Fix from $1,9502026-06-12 HIGH 7.8 CVE-2026-44171 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11… MariaDB 10.6.26 / 10.11.17+ Fix from $1,9502026-06-12 CRITICAL 9.8 CVE-2026-49261 MariaDB server is a community developed fork of MySQL server. Versions 10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11, 11.8… MariaDB 10.6.27 / 10.11.18+ Fix from $2,3002026-06-11 MEDIUM 6.5 CVE-2026-35549 An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 12.x before 12.2.2. If the caching_sha2_password a… MariaDB 11.4.10 / 11.8.6+ Fix from $1,6002026-04-03 CRITICAL 9.9 CVE-2026-32710 MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11… MariaDB 11.4.10 / 11.8.6+ Fix from $2,3002026-03-20 HIGH 7.5 CVE-2025-56404 An issue was discovered in MariaDB MCP 0.1.0 allowing attackers to gain sensitive information via the SSE service as the SSE service lacks user valid… Model Context Protocol No fix yet Fix from $1,9502025-09-10 CRITICAL 9.8 CVE-2023-26785 MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create funct… MariaDB No fix yet Fix from $2,3002024-10-17 MEDIUM 5.7 CVE-2024-27766 An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the Mar… MariaDB No fix yet Fix from $1,6002024-10-17 MEDIUM 5.6 CVE-2023-39593 Insecure permissions in the sys_exec function of MariaDB v10.5 allows authenticated attackers to execute arbitrary commands with elevated privileges.… MariaDB No fix yet Fix from $1,6002024-10-17 HIGH 7.5 CVE-2023-5157 A vulnerability was found in MariaDB. An OpenVAS port scan on ports 3306 and 4567 allows a malicious remote client to cause a denial of service. MariaDB 10.3.36 / 10.4.26+ Fix from $1,9502023-09-27 MEDIUM 6.5 CVE-2023-40354 An issue was discovered in MariaDB MaxScale before 23.02.3. A user enters an encrypted password on a "maxctrl create service" command line, but this … Maxscale 2.5.28 / 6.4.9+ Fix from $1,6002023-08-14 MEDIUM 6.5 CVE-2022-47015 MariaDB Server before 10.3.34 thru 10.9.3 is vulnerable to Denial of Service. It is possible for function spider_db_mbase::print_warnings to derefere… MariaDB 10.3.39 / 10.4.29+ Fix from $1,6002023-01-20 MEDIUM 5.5 CVE-2022-38791 In MariaDB before 10.9.2, compress_write in extra/mariabackup/ds_compress.cc does not release data_mutex upon a stream write failure, which allows lo… MariaDB 10.3.36 / 10.4.26+ Fix from $1,6002022-08-27 HIGH 7.5 CVE-2022-32081 MariaDB v10.4 to v10.7 was discovered to contain an use-after-poison in prepare_inplace_add_virtual at /storage/innobase/handler/handler0alter.cc. MariaDB 10.4.26 / 10.5.17+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32082 MariaDB v10.5 to v10.7 was discovered to contain an assertion failure at table->get_ref_count() == 0 in dict0dict.cc. MariaDB 10.5.17 / 10.6.9+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32083 MariaDB v10.2 to v10.6.1 was discovered to contain a segmentation fault via the component Item_subselect::init_expr_cache_tracker. MariaDB 10.2.44 / 10.3.35+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32084 MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component sub_select. MariaDB 10.3.36 / 10.4.26+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32085 MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component Item_func_in::cleanup/Item::cleanup_processor. MariaDB 10.2.44 / 10.3.35+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32086 MariaDB v10.4 to v10.8 was discovered to contain a segmentation fault via the component Item_field::fix_outer_field. MariaDB 10.4.25 / 10.5.16+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32087 MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component Item_args::walk_args. MariaDB 10.3.35 / 10.4.25+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32088 MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component Exec_time_tracker::get_loops/Filesort_tracker::report_use/fil… MariaDB 10.2.44 / 10.3.35+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32089 MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level. MariaDB 10.4.26 / 10.5.17+ Fix from $1,9502022-07-01 HIGH 7.5 CVE-2022-32091 MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptor… MariaDB 10.3.36 / 10.4.26+ Fix from $1,9502022-07-01 MEDIUM 5.5 CVE-2022-31621 MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_xbstream.cc, when an error occurs (stream_ctxt->dest_file == N… MariaDB 10.2.41 / 10.3.32+ Fix from $1,6002022-05-25 MEDIUM 5.5 CVE-2022-31622 MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs (pthread_create returns a no… MariaDB 10.2.42 / 10.3.33+ Fix from $1,6002022-05-25