← Back to browse · API

CVE-2023-26785

Severity
CRITICAL
CVSS
9.8
EPSS
0.02159
Risk score
39.96
CISA KEV
No
PoC
No
Published
2024-10-17
Modified
2024-10-20
First seen
2026-08-07
Aliases
EUVD-2023-30578, GHSA-JJ42-9W8M-9979
Products
n/a:n/a n/a
Sources
euvd EUVD-2023-30578

Description

MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

References