Search CVE reports


Toggle filters

1 – 10 of 1739 results


CVE-2025-10061

Medium priority
Needs evaluation

An authorized user can cause a crash in the MongoDB Server through a specially crafted $group query. This vulnerability is related to the incorrect handling of certain accumulator functions when additional parameters are specified...

1 affected package

mongodb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mongodb Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2025-10060

Medium priority
Needs evaluation

MongoDB Server may allow upsert operations retried within a transaction to violate unique index constraints, potentially causing an invariant failure and server crash during commit. This issue may be triggered by...

1 affected package

mongodb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mongodb Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2025-10059

Medium priority
Needs evaluation

An improper setting of the lsid field on any sharded query can cause a crash in MongoDB routers. This issue occurs when a generic argument (lsid) is provided in a case when it is not applicable. This affects MongoDB Server v6.0...

1 affected package

mongodb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mongodb Not in release Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2025-54119

Medium priority
Needs evaluation

ADOdb is a PHP database class library that provides abstractions for performing queries and managing databases. In versions 5.22.9 and below, improper escaping of a query parameter may allow an attacker to execute arbitrary SQL...

1 affected package

libphp-adodb

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libphp-adodb Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-53840

Medium priority
Not affected

Icinga DB Web provides a graphical interface for Icinga monitoring. Starting in version 1.2.0 and prior to version 1.2.2, users with access to Icinga Dependency Views, are allowed to see hosts and services that they weren't meant...

1 affected package

icingadb-web

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
icingadb-web Not affected Not in release
Show less packages

CVE-2025-53032

Medium priority
Needs evaluation

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 9.0.0-9.1.0. Easily exploitable vulnerability allows high privileged attacker with network access...

11 affected packages

mysql-5.5, mysql-5.7, mysql-8.0, mysql-8.4, mariadb...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.5 Not in release Not in release
mysql-5.7 Not in release Not in release Ignored
mysql-8.0 Not affected Not affected Not affected
mysql-8.4 Not in release Not in release
mariadb Needs evaluation Not in release
mariadb-10.0 Not in release Not in release
mariadb-10.1 Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release
percona-server-5.6 Not in release Not in release
Show all 11 packages Show less packages

CVE-2025-53023

Medium priority

Some fixes available 3 of 15

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.0-8.0.42. Easily exploitable vulnerability allows high privileged attacker with network...

11 affected packages

mysql-5.5, mysql-5.7, mysql-8.0, mysql-8.4, mariadb...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.5 Not in release Not in release
mysql-5.7 Not in release Not in release Ignored
mysql-8.0 Fixed Fixed Fixed
mysql-8.4 Not in release Not in release
mariadb Needs evaluation Not in release
mariadb-10.0 Not in release Not in release
mariadb-10.1 Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release
percona-server-5.6 Not in release Not in release
Show all 11 packages Show less packages

CVE-2025-50104

Medium priority

Some fixes available 5 of 17

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged...

11 affected packages

mysql-5.5, mysql-5.7, mysql-8.0, mysql-8.4, mariadb...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.5 Not in release Not in release
mysql-5.7 Not in release Not in release Ignored
mysql-8.0 Fixed Fixed Fixed
mysql-8.4 Not in release Not in release
mariadb Needs evaluation Not in release
mariadb-10.0 Not in release Not in release
mariadb-10.1 Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release
percona-server-5.6 Not in release Not in release
Show all 11 packages Show less packages

CVE-2025-50103

Medium priority
Needs evaluation

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: LDAP Auth). Supported versions that are affected are 9.0.0-9.3.0. Difficult to exploit vulnerability allows high privileged attacker with...

11 affected packages

mysql-5.5, mysql-5.7, mysql-8.0, mysql-8.4, mariadb...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.5 Not in release Not in release
mysql-5.7 Not in release Not in release Ignored
mysql-8.0 Not affected Not affected Not affected
mysql-8.4 Not in release Not in release
mariadb Needs evaluation Not in release
mariadb-10.0 Not in release Not in release
mariadb-10.1 Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release
percona-server-5.6 Not in release Not in release
Show all 11 packages Show less packages

CVE-2025-50102

Medium priority

Some fixes available 5 of 17

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows...

11 affected packages

mysql-5.5, mysql-5.7, mysql-8.0, mysql-8.4, mariadb...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
mysql-5.5 Not in release Not in release
mysql-5.7 Not in release Not in release Ignored
mysql-8.0 Fixed Fixed Fixed
mysql-8.4 Not in release Not in release
mariadb Needs evaluation Not in release
mariadb-10.0 Not in release Not in release
mariadb-10.1 Not in release Not in release Needs evaluation
mariadb-10.3 Not in release Not in release Ignored
mariadb-10.6 Not in release Needs evaluation
percona-xtradb-cluster-5.6 Not in release Not in release
percona-server-5.6 Not in release Not in release
Show all 11 packages Show less packages