Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Cluster executes to compromise MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Cluster. CVSS 3.1 Base Score 6.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
History

Thu, 24 Jul 2025 21:30:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:*

Thu, 17 Jul 2025 12:15:00 +0000

Type Values Removed Values Added
Title mysql: General unspecified vulnerability (CPU Jul 2025)
References
Metrics threat_severity

None

threat_severity

Moderate


Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00012}


Tue, 15 Jul 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Jul 2025 19:45:00 +0000

Type Values Removed Values Added
Description Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Cluster executes to compromise MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Cluster. CVSS 3.1 Base Score 6.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
References
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: oracle

Published: 2025-07-15T19:27:37.241Z

Updated: 2025-07-16T03:56:16.708Z

Reserved: 2025-06-11T22:56:56.110Z

Link: CVE-2025-50068

cve-icon Vulnrichment

Updated: 2025-07-15T20:40:50.305Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-15T20:15:41.467

Modified: 2025-07-24T21:27:37.400

Link: CVE-2025-50068

cve-icon Redhat

Severity : Moderate

Publid Date: 2025-07-15T19:27:37Z

Links: CVE-2025-50068 - Bugzilla