CVE-2026-44172 (matched: mariadb)

  • Friday, 31st July, 2026
  • 22:04pm

A security flaw has been identified in MariaDB, a popular open-source database software that many websites use to store content like user accounts, product listings, and blog posts. The issue affects MariaDB versions 3.3.18 and 3.4.8.

The bug creates a gap in a common security measure developers use to block malicious input from website visitors (such as form submissions, search queries, or comment content) from harming the database. Even when that standard input filtering tool is used, attackers could bypass it to send harmful database commands if the site uses the big5 character set and text protocol for its database connections.

This issue has been patched in updated MariaDB versions 3.3.19 and 3.4.9.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2026-44172

« Back