MySQL Server and MySQL Cluster Vulnerability Affects Oracle Products
CVE-2026-60188

4.4MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60188?

A vulnerability exists in Oracle's MySQL Server and MySQL Cluster that may allow an attacker with high privileges and network access to compromise the servers. This flaw can result in unauthorized actions leading to a denial-of-service condition, causing the MySQL Server or Cluster to hang or crash repeatedly. The affected versions include various releases from both MySQL Server and Cluster, emphasizing the need for immediate attention and remediation.

Affected Version(s)

MySQL Cluster 8.0.0-8.0.47

MySQL Cluster 8.4.0-8.4.10

MySQL Cluster 9.7.0-9.7.1

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.