CVE-2015-8949: Dbd-MySQL Project Dbd-MySQL

Critical severity, CVSS 9.8. EPSS: 4.5% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the my_login function in DBD::mysql before 4.033_01 allows attackers to have unspecified impact by leveraging a call to mysql_errno after a failure of my_login.

Affected products

Published 2016-08-19. Last modified 2026-06-17.