CVE-2025-21583

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Apr 15, 2025
Updated: Apr 19, 2025
CWE ID 732

Summary

CVE-2025-21583 is a newly identified vulnerability affecting Oracle MySQL Server versions 8.4.0 and 9.0.0. This issue, located within the DDL component, allows high-privileged attackers with network access to exploit it via multiple protocols. Successful exploitation can lead to a hang or frequent crashes of the MySQL Server, resulting in a Denial of Service (DoS) attack. The Base Score of this vulnerability, according to the Common Vulnerability Scoring System (CVSS), is 4.9, and the attack vector is defined as network (N), requiring high privileges (H), and having no user interface (N).

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share