CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107822

MEDIUMCVSS 6.4NVD feed

Published 9 October 2026 · tracked since 10 October 2026

Description

MariaDB server is a community developed fork of MySQL server. From 10.6.1 until 10.6.28, 10.11.19, 11.4.13, 11.8.9, 12.3.3, and 13.0.2, MariaDB's ACL cache could generate the same database-privilege cache key for role and localhost user names that matched because both used an empty IP component. An

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-107822 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107822

MEDIUMCVSS 6.4NVD feed

Published 9 October 2026 · tracked since 10 October 2026

Description

MariaDB server is a community developed fork of MySQL server. From 10.6.1 until 10.6.28, 10.11.19, 11.4.13, 11.8.9, 12.3.3, and 13.0.2, MariaDB's ACL cache could generate the same database-privilege cache key for role and localhost user names that matched because both used an empty IP component. An

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]