CVE-2026-44172 (matched: mariadb)

  • Thursday, 23rd July, 2026
  • 22:05pm

A security flaw has been identified in MariaDB server versions 3.3.18 and 3.4.8. MariaDB is a community-developed fork of MySQL, a common database system many websites use to store content, user information, and other important data. This flaw lets malicious user input slip past a standard built-in security tool that is supposed to block it from being used in database queries, but only if the site uses the big5 character set for database text. If exploited, this could allow attackers to run unauthorized commands on your site’s database, potentially letting them view, modify, or delete the data stored there. The issue has already been fixed in updated MariaDB versions 3.3.19 and 3.4.9.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2026-44172

« Back