CVE-2025-21520

CVSS 3.1 Score 1.8 of 10 (low)

Details

Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 732

Summary

CVE-2025-21520 is a vulnerability affecting Oracle MySQL Server versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue, designated as difficult to exploit, enables a high-privileged attacker with access to the MySQL Server infrastructure to compromise the system. Successful attacks necessitate human interaction and can lead to unauthorized read access to a subset of the server's data, impacting confidentiality with a CVSS 3.1 Base Score of 1.8.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share