CVE stands for "Common Vulnerabilities and Exposures". It is a publicly available and free to use database of known software vulnerabilities maintained at
CPU stands for "Critical Patch Update". Oracle publishes Critical Patch Update Advisories four times a year, on the Tuesday closest to the 17th day of January, April, July and October. MySQL vulnerabilities are included in these CPU Advisories.
Some vulnerabilities found in MySQL apply to MariaDB as well, they are listed on the Security page.
Other vulnerabilities found in MySQL do not apply to MariaDB.
This page lists all CVEs that were fixed in MySQL and mentioned in Oracle CPU Advisories, but that — to the best of our knowledge — were never present in MariaDB.
Not a vulnerability:
—
—
This page is licensed: CC BY-SA / Gnu FDL
CVE-2020-14769 6a0e79b462e1
CVE-2020-14793 9bb243a3fa25
CVE-2020-14867 7e730bd604e1
CVE-2018-2773 — See MDEV-13402