CVE-2025-50068: Medium severity Oracle MySQL Cluster vulnerability
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Cluster executes to compromise MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Cluster. CVSS 3.1 Base Score 6.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-50068?
CVE-2025-50068 is considered a high severity vulnerability that allows attackers with high privileges to exploit the MySQL Cluster.
How do I fix CVE-2025-50068?
To fix CVE-2025-50068, you should upgrade your MySQL Cluster to a version higher than 8.0.42, 8.4.5, or 9.3.0.
What versions of MySQL Cluster are affected by CVE-2025-50068?
CVE-2025-50068 affects MySQL Cluster versions 8.0.0 to 8.0.42, 8.4.0 to 8.4.5, and 9.0.0 to 9.3.0.
Who can exploit CVE-2025-50068?
CVE-2025-50068 can be exploited by high privileged attackers who have logon access to the infrastructure where MySQL Cluster is running.
Is there a patch available for CVE-2025-50068?
Yes, a patch for CVE-2025-50068 is included in the newer versions of MySQL Cluster released after those specified in the vulnerability details.