CVE-2023-52970 | MariaDB Server up to 10.4.x/10.5.x/11.x/11.3.x derived_field_transformer_for_where insecure automated optimizations (Nessus ID 235352 / WID-SEC-2025-0507)
A vulnerability was found in MariaDB Server up to 10.4.x/10.5.x/11.x/11.3.x. It has been classified as problematic. Affected is the function Item_direct_view_ref::derived_field_transformer_for_where. The manipulation leads to insecure automated optimizations.
This vulnerability is referenced as CVE-2023-52970. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.