CRITICAL9.8CVE-2015-7224puppetlabs-mysql 3.1.0 through 3.6.0 allow remote attackers to bypass authentication by leveraging creation of a database account without a…
from 0, < 3.6.1-1
HIGH8.8CVE-2022-3276Command injection is possible in the puppetlabs-mysql module prior to version 13.0.0.
from 0
HIGH8.0CVE-2018-6508Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the f…