CVE-2025-21501
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jan 21, 2025
Summary
CVE-2025-21501 is a vulnerability affecting Oracle MySQL Server versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue lies within the Optimizer component and can be exploited by a low-privileged attacker with network access. Successful attacks may lead to a hang or frequent crashes of MySQL Server, resulting in a denial-of-service (DoS) condition. The CVSS Base Score is 6.5, with a high impact on availability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MySQL