Vulnerability in MySQL Server and MySQL Cluster by Oracle
CVE-2026-60189

4.4MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60189?

A vulnerability exists within the MySQL Server and MySQL Cluster components of Oracle MySQL, which can potentially be exploited by a privileged attacker with network access. This weakness allows for the possibility of causing significant disruptions, including hanging or crashing the MySQL services. Affected versions include MySQL Server 8.4.0 to 8.4.10 and 9.7.0 to 9.7.1, alongside specific versions of MySQL Cluster. It's crucial for users to apply the necessary patches to mitigate these risks.

Affected Version(s)

MySQL Cluster 8.0.0-8.0.47

MySQL Cluster 8.4.0-8.4.10

MySQL Cluster 9.7.0-9.7.1

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.