CVE-2025-30693 is a medium-severity vulnerability affecting Oracle MySQL Server versions 8.0.0-8.0.41, 8.4.0-8.4.4, and 9.0.0-9.2.0, specifically within the InnoDB component. This easily exploitable flaw allows a high-privileged attacker with network access to cause a complete denial of service (DoS) or unauthorized data modification (insert, update, delete). There is currently no public exploit code available, and the vulnerability has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 7.6.0, <= 7.6.33CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* | ||
>= 8.0.0, <= 8.0.41CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* | ||
>= 8.4.0, <= 8.4.4CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* | ||
>= 9.0.0, <= 9.2.0CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_cluster:*:*:*:*:*:*:*:* | ||
>= 8.0.0, <= 8.0.41CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Third-Party Package Updates in Splunk AppDynamics On-Premises Enterprise Console - August 2025
Aug 6, 2025mysql: mariadb: InnoDB unspecified vulnerability (CPU Apr 2025)
Apr 15, 2025Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.41, 8.4.0-8.4.4 and 9.0.0-9.2.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
Apr 8, 2025