DirectorySecurity Advisories
Sign In
Security Advisories

CGA-2vxp-5gw9-mqfx

Published

Last updated

https://images.chainguard.dev/security/CGA-2vxp-5gw9-mqfx
Package

dependency-track

Latest Update
Pending upstream fix
Aliases
  • CVE-2023-22102
  • GHSA-m6vm-37g8-gqvh

Severity

8.3

High

CVSS V3

Summary

MySQL Connectors takeover vulnerability

Description

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 8.1.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in MySQL Connectors, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Connectors.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images