Skip to main content

Vendor/product archive

puppet / puppetlabs-mysql CVEs

Beta · best-effort

3 CVEs tagged to puppet / puppetlabs-mysql1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2022-3276

Published Oct 7, 2022

Command injection is possible in the puppetlabs-mysql module prior to version 13.0.0. A malicious actor is able to exploit this vulnerability only if they are able to provide unsa…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2015-7224

Published Dec 21, 2017

puppetlabs-mysql 3.1.0 through 3.6.0 allow remote attackers to bypass authentication by leveraging creation of a database account without a password when a 'mysql_user' user param…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1