CVE-2025-21531
CVSS 3.1 Score 4.9 of 10 (medium)
Details
Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 770
Summary
CVE-2025-21531 is a vulnerability affecting the MySQL Server product of Oracle MySQL, specifically versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue lies in the InnoDB component and is characterized as easily exploitable. Attackers with high privileges and network access can leverage this weakness to cause a hang or frequent crashes of the MySQL Server, leading to a denial-of-service (DoS) scenario. The base score of CVSS 3.1 for this vulnerability is 4.9, with an availability impact.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MySQL