CVE-2025-8107

Publication date

2025-07-24 07:12:13

Family

OB

State

PUBLISHED

Description

In OceanBases Oracle tenant mode, a malicious user with specific privileges can achieve privilege escalation to SYS-level access by executing carefully crafted commands. This vulnerability only affects OceanBase tenants in Oracle mode. Tenants in MySQL mode are unaffected.