MySQL Connectors Vulnerability in Oracle MySQL
CVE-2026-60586

7.7HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60586?

A vulnerability exists in Oracle's MySQL Connectors that allows attackers with low privileges and network access to exploit it through multiple protocols. This weakness can lead to unauthorized access to sensitive data across MySQL Connectors, impacting not just the MySQL Connectors themselves but potentially extending to other connected products. Attackers may gain significant control over the accessible data, emphasizing the critical need for users to update to unaffected versions to mitigate risks.

Affected Version(s)

MySQL Connectors 9.7.0 <= 9.7.1

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.