VDB

GCVE-110-NCSC-2026-20

GCVE-110-NCSC-2026-20
Advisory PublishedCVSS 7.5/10
Vulnetix · Advisory published January 21, 2026
Recent updates to curl and MySQL Enterprise Backup address critical vulnerabilities, including cookie path issues and denial of service risks in various software versions.

Weaknesses (CWE)

CWE-125Out-of-bounds ReadCWE-285Improper AuthorizationCWE-674Uncontrolled RecursionCWE-201Insertion of Sensitive Information Into Sent DataCWE-404Improper Resource Shutdown or ReleaseCWE-611Improper Restriction of XML External Entity Reference

Risk Scores

CVSS 3.1
7.5/10
High · CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersionsPlatforms
Oraclevers:unknown/*

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

74,299 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›