mariadb

414 tracked vulnerabilities.

CVE-2021-2389 MEDIUM
MySQL Server <= 5.7.34 and <= 8.0.25 - Unauthenticated Denial of Service in InnoDB
Jul 21, 2021
CVSS 5.9
EPSS 0.01
CVE-2021-2372 MEDIUM
MySQL Server <= 5.7.34 and <= 8.0.25 - Authenticated Denial of Service in InnoDB
Jul 21, 2021
CVSS 4.4
EPSS 0.00
CVE-2021-2194 MEDIUM
MySQL Server <= 5.7.33 and <= 8.0.23 - Authenticated Denial of Service in InnoDB
Apr 22, 2021
CVSS 4.9
EPSS 0.01
CVE-2021-2180 MEDIUM
MySQL Server <= 5.7.33 and <= 8.0.23 - Authenticated Denial of Service in InnoDB
Apr 22, 2021
CVSS 4.9
EPSS 0.05
CVE-2021-2174 MEDIUM
MySQL Server <= 5.7.33 and <= 8.0.23 - Denial of Service in InnoDB
Apr 22, 2021
CVSS 4.4
EPSS 0.01
CVE-2021-2166 MEDIUM
MySQL Server 5.7.0-5.7.33 and 8.0.0-8.0.23 - Authenticated Denial of Service in DML Component
Apr 22, 2021
CVSS 4.9
EPSS 0.01
CVE-2021-2154 MEDIUM
MySQL Server <= 5.7.33 - Authenticated Denial of Service in DML Component
Apr 22, 2021
CVSS 4.9
EPSS 0.00
CVE-2021-2144 HIGH
MySQL Server < 5.7.29 and 8.0.19 - Authenticated Remote Code Execution in Parser
Apr 22, 2021
CVSS 7.2
EPSS 0.04
CVE-2021-27928 HIGH
MariaDB <10.2.37, 10.3.28, 10.4.18, 10.5.9 - RCE
Mar 19, 2021
CVSS 7.2
EPSS 0.49
CVE-2021-2032 MEDIUM
MySQL Server <8.0.22 - Info Disclosure
Jan 20, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-2022 MEDIUM
MySQL < 5.6.50, 5.7.32, 8.0.22 - Authenticated Denial of Service in InnoDB
Jan 20, 2021
CVSS 4.4
EPSS 0.00
CVE-2021-2011 MEDIUM
MySQL Client <= 5.7.32 and <= 8.0.22 - Unauthenticated Denial of Service via Multiple Protocols
Jan 20, 2021
CVSS 5.9
EPSS 0.02
CVE-2021-2007 LOW
Oracle MySQL <5.6.48, <5.7.30, <8.0.20 - SQL Injection
Jan 20, 2021
CVSS 3.7
EPSS 0.01
CVE-2020-15180 CRITICAL
mariadb <10.1.47-10.5.6 - Command Injection
May 27, 2021
CVSS 9.0
EPSS 0.05
CVE-2020-28912 HIGH
MariaDB < 10.1.48 - Unauthenticated Man-in-the-Middle via Named Pipe Security Descriptor
Dec 24, 2020
CVSS 7.0
EPSS 0.00
CVE-2020-14812 MEDIUM
MySQL Server <= 5.6.49, 5.7.31, 8.0.21 - Authenticated Denial of Service in Locking Component
Oct 21, 2020
CVSS 4.9
EPSS 0.01
CVE-2020-14789 MEDIUM
MySQL Server 5.7.0-5.7.31 and 8.0.0-8.0.21 - Authenticated Denial of Service in FTS Component
Oct 21, 2020
CVSS 4.9
EPSS 0.01
CVE-2020-14776 MEDIUM
MySQL Server <= 5.7.31 and <= 8.0.21 - Authenticated Denial of Service in InnoDB
Oct 21, 2020
CVSS 4.9
EPSS 0.01
CVE-2020-14765 MEDIUM
MySQL Server < 5.6.49, 5.7.31, 8.0.21 - Authenticated Denial of Service in FTS Component
Oct 21, 2020
CVSS 6.5
EPSS 0.02
CVE-2020-14550 MEDIUM
MySQL Client 5.6.0-5.6.48, 5.7.0-5.7.30, 8.0.0-8.0.20 - Denial of Service via C API
Jul 15, 2020
CVSS 5.3
EPSS 0.01
CVE-2020-13249 HIGH
MariaDB Connector/C <3.1.8 - Info Disclosure
May 20, 2020
CVSS 8.8
EPSS 0.01
CVE-2020-2922 LOW
Oracle MySQL <5.6.48, <5.7.30, <8.0.19 - SQL Injection
Apr 15, 2020
CVSS 3.7
EPSS 0.00
CVE-2020-2814 MEDIUM
MySQL Server <= 5.6.47, <= 5.7.28, <= 8.0.18 - Authenticated Denial of Service in InnoDB
Apr 15, 2020
CVSS 4.9
EPSS 0.00
CVE-2020-2812 MEDIUM
MySQL Server <= 5.6.47, <= 5.7.29, <= 8.0.19 - Authenticated Denial of Service in Stored Procedure
Apr 15, 2020
CVSS 4.9
EPSS 0.00
CVE-2020-2780 MEDIUM
MySQL Server <= 5.6.47, <= 5.7.29, <= 8.0.19 - Authenticated Denial of Service in DML Component
Apr 15, 2020
CVSS 6.5
EPSS 0.01