Information Disclosure in MariaDB Server by MariaDB Corporation
CVE-2026-44169
4.3MEDIUM
What is CVE-2026-44169?
A security flaw exists in MariaDB Server that allows users with EXECUTE access to stored routines to view routine definitions, bypassing the need for SHOW CREATE ROUTINE privilege. This issue affects versions 11.4.1 to 11.4.11, 11.8.1 to 11.8.7, and 12.3.1, but has been resolved in subsequent releases, specifically versions 11.4.11, 11.8.7, and 12.3.2. Users are encouraged to upgrade their installations to eliminate this risk.
Affected Version(s)
server >= 11.4.1, < 11.4.11 < 11.4.1, 11.4.11
server >= 11.8.1, < 11.8.7 < 11.8.1, 11.8.7
server >= 12.3.1, < 12.3.2 < 12.3.1, 12.3.2
