Medium severity4.1NVD Advisory· Published Apr 14, 2023· Updated Jun 17, 2026
CVE-2023-29194
CVE-2023-29194
Description
Vitess is a database clustering system for horizontal scaling of MySQL. Users can either intentionally or inadvertently create a keyspace containing / characters such that from that point on, anyone who tries to view keyspaces from VTAdmin will receive an error. Trying to list all the keyspaces using vtctldclient GetKeyspaces will also return an error. Note that all other keyspaces can still be administered using the CLI (vtctldclient). This issue is fixed in version 16.0.1. As a workaround, delete the offending keyspace using a CLI client (vtctldclient).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
vitess.io/vitessGo | < 0.16.1 | 0.16.1 |
Affected products
2Patches
Vulnerability mechanics
References
6- github.com/vitessio/vitess/commit/adf10196760ad0b3991a7aa7a8580a544e6ddf88nvdPatchWEB
- github.com/advisories/GHSA-735r-hv67-g38fghsaADVISORY
- github.com/vitessio/vitess/security/advisories/GHSA-735r-hv67-g38fnvdVendor AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2023-29194ghsaADVISORY
- github.com/vitessio/vitess/commits/v0.16.1ghsaWEB
- github.com/vitessio/vitess/commits/v0.16.1/nvdRelease Notes
News mentions
0No linked articles in our index yet.