Tidb Pingcap Tidb

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Pingcap Tidb.

By the Year

In 2026 there have been 0 vulnerabilities in Pingcap Tidb. Last year, in 2025 Tidb had 1 security vulnerability published. Right now, Tidb is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 1 8.80
2024 4 0.00
2023 0 0.00
2022 3 8.37

It may take a day or so for new Tidb vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Pingcap Tidb Security Vulnerabilities

RCE in TiDB PD via Hessian deserialization before 1.7
CVE-2025-26866 8.8 - High - December 12, 2025

A remote code execution vulnerability exists where a malicious Raft node can exploit insecure Hessian deserialization within the PD store. The fix enforces IP-based authentication to restrict cluster membership and implements a strict class whitelist to harden the Hessian serialization process against object injection attacks. Users are recommended to upgrade to version 1.7.0, which fixes the issue.

Marshaling, Unmarshaling

PingCAP TiDB 8.1.0 Buffer Overflow DoS via expression.Expressi
CVE-2024-41433 - September 03, 2024

PingCAP TiDB v8.1.0 was discovered to contain a buffer overflow via the component expression.ExplainExpressionList. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. NOTE: PingCAP maintains that the actual reproduction of this issue did not cause the security impact of service interruption to other users. They argue that this is a complex query bug and not a DoS vulnerability.

PingCAP TiDB 8.1.0 Buffer Overflow in Column.GetDecimal DoS
CVE-2024-41434 - September 03, 2024

PingCAP TiDB v8.1.0 was discovered to contain a buffer overflow via the component (*Column).GetDecimal. This allows attackers to cause a Denial of Service (DoS) via a crafted input to the 'RemoveUnnecessaryFirstRow', it will check the expression between 'Agg' and 'GroupBy', but does not check the return type. NOTE: PingCAP disputes this, arguing that reproduction did not cause the security impact of service interruption to other users. They maintain it is a complex query bug in the product but not a DoS.

PingCAP TiDB v7.5.1 NULL Pointer Deref via SortedRowContainer
CVE-2024-35618 - May 24, 2024

PingCAP TiDB v7.5.1 was discovered to contain a NULL pointer dereference via the component SortedRowContainer.

PingCAP TiDB 7.5.1 Buffer Overflow causing DoS
CVE-2024-33809 - May 24, 2024

PingCAP TiDB v7.5.1 was discovered to contain a buffer overflow vulnerability, which could lead to database crashes and denial of service attacks.

Externally-Controlled Format String in TiDB (PingCAP) before 6.4.0 & 6.1.3
CVE-2022-3023 9.8 - Critical - November 04, 2022

Use of Externally-Controlled Format String in GitHub repository pingcap/tidb prior to 6.4.0, 6.1.3.

Use of Externally-Controlled Format String

PingCAP TiDB v6.1.0 NULL Pointer Deref
CVE-2022-34969 7.5 - High - August 03, 2022

PingCAP TiDB v6.1.0 was discovered to contain a NULL pointer dereference.

NULL Pointer Dereference

TiDB is an open-source NewSQL database that supports Hybrid Transactional and Analytical Processing (HTAP) workloads
CVE-2022-31011 7.8 - High - May 31, 2022

TiDB is an open-source NewSQL database that supports Hybrid Transactional and Analytical Processing (HTAP) workloads. Under certain conditions, an attacker can construct malicious authentication requests to bypass the authentication process, resulting in privilege escalation or unauthorized access. Only users using TiDB 5.3.0 are affected by this vulnerability. TiDB version 5.3.1 contains a patch for this issue. Other mitigation strategies include turning off Security Enhanced Mode (SEM), disabling local login for non-root accounts, and ensuring that the same IP cannot be logged in as root and normal user at the same time.

authentification

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Pingcap Tidb or by Pingcap? Click the Watch button to subscribe.

Pingcap
Vendor

Pingcap Tidb
Product

subscribe