A AegiFlow
CRITICALCVSS 9.8

CVE-2023-26785

CVE-2023-26785 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

Affected packages

EcosystemPackageAffected versionsFixed versions
MariaDBmariadb[object Object]

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.