MySQL Shell Vulnerability in Oracle MySQL
CVE-2026-46869

6.5MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
16 June 2026

What is CVE-2026-46869?

An exploitable vulnerability exists in MySQL Shell of Oracle MySQL that allows an unauthenticated attacker, with network access, to exploit multiple protocols. Successful exploitation necessitates human interaction from another user, which facilitates unauthorized access to critical data or complete access to all MySQL Shell data. This vulnerability underscores the importance of implementing stringent security measures and monitoring network activities to protect sensitive information.

Affected Version(s)

MySQL Shell 8.4.0 <= 8.4.9

MySQL Shell 9.0.0 <= 9.7.0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.