Denial of Service Vulnerability in MySQL Server and MySQL Cluster by Oracle
CVE-2026-61093

6.5MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-61093?

An exploitable vulnerability exists in MySQL Server and MySQL Cluster, allowing low privileged attackers with network access via various protocols to target the systems. This vulnerability can lead to unauthorized actions that cause the server to hang or crash frequently, resulting in a complete denial of service for the affected products. It is crucial for users to be aware of the affected versions to ensure system stability and security.

Affected Version(s)

MySQL Cluster 9.7.0-9.7.1

MySQL Server 9.7.0-9.7.1

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.