CVE-2025-21529

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 770

Summary

CVE-2025-21529 is a vulnerability affecting MySQL Server versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior (Oracle MySQL, Server: Information Schema component). This easily exploitable issue enables high-privileged attackers with network access, through multiple protocols, to cause a denial-of-service (DoS) by inducing a hang or frequent crashes in the MySQL Server. The resulting impact on availability is rated as high (CVSS Base Score: 4.9). Attackers can potentially exploit this vulnerability without user interaction and without needing to authenticate, making it a significant security concern.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share