VYPR

MariaDB Server

by MariaDB

Source repositories

CVEs (3)

  • CVE-2026-32710HigMar 20, 2026
    risk 0.48cvss 8.5epss 0.01

    MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might be possible to turn the crash into a remote code…

  • CVE-2026-35549MedApr 3, 2026
    risk 0.42cvss 6.5epss 0.00

    An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 12.x before 12.2.2. If the caching_sha2_password authentication plugin is installed, and some user accounts are configured to use it, a large packet can crash the server because…

  • CVE-2026-3494MedMar 3, 2026
    risk 0.28cvss 4.3epss 0.00

    In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#)…