Security Flaw in Oracle MySQL Connectors Affecting Multiple Versions
CVE-2026-60623

7.1HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60623?

A vulnerability has been identified in Oracle's MySQL Connectors, specifically within Connector/J versions 9.7.0 to 9.7.1. This flaw can be exploited by an attacker with low privileges and network access, potentially allowing unauthorized creation, deletion or modification of critical data. Additionally, the vulnerability grants unauthorized access to comprehensive data and may lead to a partial denial of service for the MySQL Connectors. The implications for confidentiality, integrity, and availability are significant, underscoring the necessity for immediate remediation.

Affected Version(s)

MySQL Connectors 9.7.0 <= 9.7.1

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.