Denial of Service Vulnerability in MySQL Server by Oracle
CVE-2026-21948
4.9MEDIUM
What is CVE-2026-21948?
A vulnerability exists in the MySQL Server component of Oracle MySQL, affecting versions 8.0.0 through 8.0.44, 8.4.0 through 8.4.7, and 9.0.0 through 9.5.0. This weakness can be exploited by attackers with high privileges and network access, leading to potential disruptions. When successfully exploited, it may result in the server hanging or experiencing a repeatable crash, causing a denial of service. Users and administrators are urged to apply the latest patches to mitigate this risk.
Affected Version(s)
MySQL Server 8.0.0 <= 8.0.44
MySQL Server 8.4.0 <= 8.4.7
MySQL Server 9.0.0 <= 9.5.0