NCSC-2026-0262 [1.00] [M/H] Vulnerabilities fixed in Oracle MySQL Server and MySQL Cluster
Oracle has fixed multiple vulnerabilities in Oracle MySQL Server and MySQL Cluster. The vulnerabilities affect various versions of Oracle MySQL Server and MySQL Cluster. Some vulnerabilities allow an attacker with high privileges and network access to cause a denial-of-service (DoS), potentially hanging or crashing the server, affecting the availability of the database. Some DoS vulnerabilities can also be exploited by low-privileged users. Additionally, there are vulnerabilities in the Group Replication Plugin and the NDB Operator component that may allow DoS or unauthorized access to data. Furthermore, there are vulnerabilities that enable an attacker with high privileges and network access to gain full control over the server, impacting confidentiality, integrity, and availability. There are also vulnerabilities in Oracle MySQL Connectors (Connector/C++, Connector/Net, Connector/J) that allow unauthenticated or low-privileged attackers with network access to manipulate data, gain access to sensitive information, or cause a denial-of-service. Some vulnerabilities require user interaction or local access. The CVSS 3.1 scores range from low (2.2) to high (8.5), depending on the type of vulnerability and the impact on the systems. The vulnerabilities are specific to Oracle MySQL Server, MySQL Cluster, and the MySQL Connectors, and are exploitable via network access, sometimes with additional requirements such as infrastructure access, user interaction, or local access.
CSIRTS triage
- What
- The vulnerabilities can cause denial-of-service and unauthorized access to data.
- Who is affected
- Various versions of Oracle MySQL Server and MySQL Cluster installations.
- Urgency
- Remediation is important as some vulnerabilities can be exploited by low-privileged users.
- Action
- Update to the latest versions of Oracle MySQL Server and MySQL Cluster.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch MySQL Server and MySQL Cluster
Get an email when a new MySQL Server and MySQL Cluster advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://advisories.ncsc.nl/advisory?id=NCSC-2026-0262
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-469360.25% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 17% of all scored CVEs.
- Low exploitation riskCVE-2026-470080.32% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 25% of all scored CVEs.
- Low exploitation riskCVE-2026-470120.34% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 27% of all scored CVEs.
- Low exploitation riskCVE-2026-470230.32% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 25% of all scored CVEs.
- Low exploitation riskCVE-2026-470520.43% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 35% of all scored CVEs.
- Low exploitation riskCVE-2026-470640.27% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 18% of all scored CVEs.
- Low exploitation riskCVE-2026-601450.40% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 33% of all scored CVEs.
- Low exploitation riskCVE-2026-601630.18% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 7% of all scored CVEs.
- Low exploitation riskCVE-2026-601710.43% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 35% of all scored CVEs.
- Low exploitation riskCVE-2026-601740.40% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 33% of all scored CVEs.
Referenced CVEs
+6 more CVEs referenced in this advisory.
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- unknownMultiple vulnerabilities in Oracle MySQL (July 23, 2026)cert-fr-avis
- high[NEW] [high] Oracle MySQL: Multiple vulnerabilitiescert-bund
- mediumCVE-2026-61144: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: O…nvd
- mediumCVE-2026-61128: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: O…nvd
- mediumCVE-2026-61109: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: J…nvd
- mediumCVE-2026-61108: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: G…nvd
- lowCVE-2026-61096: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: P…nvd
- highCVE-2026-61094: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: R…nvd
- mediumCVE-2026-61093: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: O…nvd
- mediumCVE-2026-61082: Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Suppor…nvd
- lowCVE-2026-61081: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: P…nvd
- mediumCVE-2026-60747: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: R…nvd
More from NCSC-NL Advisories
- unknownNCSC-2026-0274 [1.00] [M/H] Kwetsbaarheid verholpen in SolarWinds Web Help Desk2026-07-31
- unknownNCSC-2026-0273 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Campaign Classic2026-07-31
- unknownNCSC-2026-0272 [1.00] [M/H] Kwetsbaarheden verholpen in JFrog Artifactory2026-07-31
- unknownNCSC-2026-0271 [1.00] [M/H] Vulnerability fixed in Cisco Secure Firewall Management Center2026-07-30
- unknownNCSC-2026-0270 [1.00] [M/M] Vulnerabilities fixed in GitLab by GitLab Inc.2026-07-30