Skip to content
MariaDB Vulnerabilities Allow Unauthorized File Access and Privilege Escalation

MariaDB Vulnerabilities Allow Unauthorized File Access and Privilege Escalation

First seen 8 Oct 2026, 20:33 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 8, 2026 at 20:34 UTC
  • •CVE-2026-102523 allows unauthorized file access via CONNECT plugin functions.
  • •Users can exploit table names as filesystem paths to alter global account data.
  • •MariaDB has released fixes for both vulnerabilities; immediate updates are recommended.

Two vulnerabilities in MariaDB's CONNECT plugin and table handling were disclosed on October 7, 2026. The first, tracked as CVE-2026-102523, allows users with basic read access to read and write server-side files without proper privilege checks. The second vulnerability enables users with table-creation privileges to manipulate table names as filesystem paths, potentially altering global account data. Both vulnerabilities were confirmed by MariaDB and are now resolved in subsequent releases. Administrators are advised to apply security updates and review account changes if their systems may have been exposed. The issues highlight significant flaws in permission enforcement and path validation within MariaDB's architecture.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-10-07
Vulnerabilities disclosed
Two vulnerabilities in MariaDB were reported, allowing unauthorized file access and privilege escalation.
Redpacketsecurity
2026-10-07
CVE-2026-102523 confirmed
The vulnerability allowing misuse of table names as filesystem paths was tracked and confirmed by MariaDB.
Redpacketsecurity

More articles in this cluster (2)

Following this threat?

Track CVE-2026-102523 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What are the specific CVEs for these vulnerabilities?
The vulnerabilities are tracked as CVE-2026-102523 for the directory abuse and another for the CONNECT plugin issue.
How can I protect my MariaDB installation?
Apply the latest security updates from MariaDB and review user privileges to limit access to sensitive functions.
Is there evidence of active exploitation?
No active exploitation has been reported; both vulnerabilities have been disclosed and patched.