Vulnerability in MySQL Server and MySQL Cluster by Oracle
CVE-2026-60190

2.2LOW

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60190?

A vulnerability exists in Oracle's MySQL Server and MySQL Cluster products, specifically related to the replication component. The vulnerability can be exploited by a high-privilege attacker with network access via various protocols. It may allow unauthorized individuals to cause a partial denial of service to the affected MySQL products, particularly impacting service availability without directly compromising data integrity or confidentiality. Users are encouraged to assess their systems and apply necessary updates to mitigate this risk.

Affected Version(s)

MySQL Cluster 8.0.0-8.0.47

MySQL Cluster 8.4.0-8.4.10

MySQL Cluster 9.7.0-9.7.1

References

CVSS V3.1

Score:
2.2
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.