Количество 15
Количество 15
BDU:2026-07584
Уязвимость плагина server audit plugin системы управления базами данных MariaDB, позволяющая нарушителю обойти существующие механизмы безопасности
ROS-20260524-73-0043
Уязвимость mariadb
ROS-20260524-73-0042
Уязвимость mariadb10.6
ROS-20260524-73-0041
Уязвимость mariadb11.4
ROS-20260524-73-0040
Уязвимость mariadb11.8
CVE-2026-3494
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged.
CVE-2026-3494
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged.
CVE-2026-3494
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged.
CVE-2026-3494
MariaDB Server Audit Plugin Comment Handling Bypass
CVE-2026-3494
In MariaDB server version through 11.8.5, when server audit plugin is ...
GHSA-qmjm-438j-w485
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged.
SUSE-SU-2026:2282-1
Security update for mariadb
SUSE-SU-2026:2284-1
Security update for mariadb
openSUSE-SU-2026:20933-1
Security update for mariadb
SUSE-SU-2026:2330-1
Security update for mariadb
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-07584 Уязвимость плагина server audit plugin системы управления базами данных MariaDB, позволяющая нарушителю обойти существующие механизмы безопасности | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
ROS-20260524-73-0043 Уязвимость mariadb | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
ROS-20260524-73-0042 Уязвимость mariadb10.6 | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
ROS-20260524-73-0041 Уязвимость mariadb11.4 | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
ROS-20260524-73-0040 Уязвимость mariadb11.8 | CVSS3: 4.3 | 0% Низкий | 2 месяца назад | |
CVE-2026-3494 In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged. | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-3494 In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged. | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-3494 In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged. | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-3494 MariaDB Server Audit Plugin Comment Handling Bypass | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
CVE-2026-3494 In MariaDB server version through 11.8.5, when server audit plugin is ... | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
GHSA-qmjm-438j-w485 In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged. | CVSS3: 4.3 | 0% Низкий | 5 месяцев назад | |
SUSE-SU-2026:2282-1 Security update for mariadb | около 2 месяцев назад | |||
SUSE-SU-2026:2284-1 Security update for mariadb | около 2 месяцев назад | |||
openSUSE-SU-2026:20933-1 Security update for mariadb | около 2 месяцев назад | |||
SUSE-SU-2026:2330-1 Security update for mariadb | около 2 месяцев назад |
Уязвимостей на страницу