RHSA-2026:56973

Vulnerability from csaf_opensuse - Published: 2026-08-19 16:23 - Updated: 2026-08-19 20:54
Summary
Red Hat Security Advisory: mysql:8.4 security, bug fix, and enhancement update
Severity
Important
Notes
Topic: An update for the mysql:8.4 module is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Details: MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries. Security Fix(es): * mysql: Performance Schema unspecified vulnerability (CPU Jul 2026) (CVE-2026-61081) * mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-47064) * mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-47012) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60331) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60190) * mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60177) * mysql: Optimizer unspecified vulnerability (CPU Jul 2026) (CVE-2026-60145) * mysql: DDL unspecified vulnerability (CPU Jul 2026) (CVE-2026-46936) * mysql: Group Replication Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60186) * mysql: X Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60315) * mysql: Pluggable Auth unspecified vulnerability (CPU Jul 2026) (CVE-2026-61096) * mysql: Group Replication Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60163) * mysql: InnoDB unspecified vulnerability (CPU Jul 2026) (CVE-2026-47052) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60188) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60184) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60185) * mysql: JSON unspecified vulnerability (CPU Jul 2026) (CVE-2026-61109) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60191) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-61094) * mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60178) * mysql: Group Replication GCS unspecified vulnerability (CPU Jul 2026) (CVE-2026-60332) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60189) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60747) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-47023) * mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60183) * mysql: X Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60316) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60187) * mysql: Replication unspecified vulnerability (CPU Jul 2026) (CVE-2026-60585) * mysql: Clone Plugin unspecified vulnerability (CPU Jul 2026) (CVE-2026-60182) Bug Fix(es) and Enhancement(s): * [tracker] Rebase MySQL to 8.4.11 (JIRA:RHEL-188045) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Terms of Use: This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-413 - Improper Resource Locking
Affected products
Product Identifier Version Remediation
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-0:0.996-3.module+el9.8.0+24348+9b27f387.4.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-0:0.996-3.module+el9.8.0+24348+9b27f387.4.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-0:0.996-3.module+el9.8.0+24348+9b27f387.4.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-0:0.996-3.module+el9.8.0+24348+9b27f387.4.src::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-0:0.996-3.module+el9.8.0+24348+9b27f387.4.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debuginfo-0:0.996-3.module+el9.8.0+24348+9b27f387.4.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debuginfo-0:0.996-3.module+el9.8.0+24348+9b27f387.4.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debuginfo-0:0.996-3.module+el9.8.0+24348+9b27f387.4.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debuginfo-0:0.996-3.module+el9.8.0+24348+9b27f387.4.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debugsource-0:0.996-3.module+el9.8.0+24348+9b27f387.4.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debugsource-0:0.996-3.module+el9.8.0+24348+9b27f387.4.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debugsource-0:0.996-3.module+el9.8.0+24348+9b27f387.4.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-debugsource-0:0.996-3.module+el9.8.0+24348+9b27f387.4.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-devel-0:0.996-3.module+el9.8.0+24348+9b27f387.4.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-devel-0:0.996-3.module+el9.8.0+24348+9b27f387.4.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-devel-0:0.996-3.module+el9.8.0+24348+9b27f387.4.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-devel-0:0.996-3.module+el9.8.0+24348+9b27f387.4.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.src::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mecab-ipadic-EUCJP-0:2.7.0.20070801-24.module+el9.8.0+24348+9b27f387.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-0:8.4.11-1.module+el9.8.0+24663+27effc5a.src::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-common-0:8.4.11-1.module+el9.8.0+24663+27effc5a.noarch::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debugsource-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debugsource-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debugsource-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-debugsource-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-devel-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-errmsg-0:8.4.11-1.module+el9.8.0+24663+27effc5a.noarch::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-libs-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-server-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-data-0:8.4.11-1.module+el9.8.0+24663+27effc5a.noarch::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:mysql-test-debuginfo-0:8.4.11-1.module+el9.8.0+24663+27effc5a.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-0:4.053-3.module+el9.8.0+24348+9b27f387.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-0:4.053-3.module+el9.8.0+24348+9b27f387.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-0:4.053-3.module+el9.8.0+24348+9b27f387.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-0:4.053-3.module+el9.8.0+24348+9b27f387.src::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-0:4.053-3.module+el9.8.0+24348+9b27f387.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debuginfo-0:4.053-3.module+el9.8.0+24348+9b27f387.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debuginfo-0:4.053-3.module+el9.8.0+24348+9b27f387.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debuginfo-0:4.053-3.module+el9.8.0+24348+9b27f387.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debuginfo-0:4.053-3.module+el9.8.0+24348+9b27f387.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debugsource-0:4.053-3.module+el9.8.0+24348+9b27f387.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debugsource-0:4.053-3.module+el9.8.0+24348+9b27f387.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debugsource-0:4.053-3.module+el9.8.0+24348+9b27f387.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:perl-DBD-MySQL-debugsource-0:4.053-3.module+el9.8.0+24348+9b27f387.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:rapidjson-0:1.1.0-19.module+el9.8.0+24348+9b27f387.src::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:rapidjson-devel-0:1.1.0-19.module+el9.8.0+24348+9b27f387.aarch64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:rapidjson-devel-0:1.1.0-19.module+el9.8.0+24348+9b27f387.ppc64le::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:rapidjson-devel-0:1.1.0-19.module+el9.8.0+24348+9b27f387.s390x::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:rapidjson-devel-0:1.1.0-19.module+el9.8.0+24348+9b27f387.x86_64::mysql:8.4 —
Vendor Fix fix
Unresolved product id: AppStream-9.8.0.Z.MAIN.EUS:rapidjson-doc-0:1.1.0-19.module+el9.8.0+24348+9b27f387.noarch::mysql:8.4 —
Vendor Fix fix
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-617 - Reachable Assertion
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: InnoDB). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Important

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-648 - Incorrect Use of Privileged APIs
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Clone Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Low

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster and unauthorized read access to a subset of MySQL Server, MySQL Cluster accessible data.

CWE-248 - Uncaught Exception
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Important

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-648 - Incorrect Use of Privileged APIs
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Important

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Performance Schema). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server, MySQL Cluster accessible data.

CWE-497 - Exposure of Sensitive System Information to an Unauthorized Control Sphere
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Low

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in takeover of MySQL Server, MySQL Cluster.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Important

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server, MySQL Cluster accessible data.

CWE-266 - Incorrect Privilege Assignment
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Low

Oracle CPU describes the issue as following: Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: JSON). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster.

CWE-770 - Allocation of Resources Without Limits or Throttling
Affected products
Fixed 93 products, the same list as for CVE-2026-46936
Threats
Impact Moderate
References
URL Category
https://access.redhat.com/errata/RHSA-2026:56973 self
https://access.redhat.com/security/updates/classi… external
https://bugzilla.redhat.com/show_bug.cgi?id=2504779 external
https://bugzilla.redhat.com/show_bug.cgi?id=2504823 external
https://bugzilla.redhat.com/show_bug.cgi?id=2504848 external
https://bugzilla.redhat.com/show_bug.cgi?id=2504855 external
https://bugzilla.redhat.com/show_bug.cgi?id=2504877 external
https://bugzilla.redhat.com/show_bug.cgi?id=2504925 external
https://bugzilla.redhat.com/show_bug.cgi?id=2504940 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505001 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505002 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505027 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505182 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505200 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505215 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505259 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505262 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505300 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505310 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505319 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505509 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505594 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505643 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505699 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505711 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505722 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505844 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505868 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505891 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505923 external
https://bugzilla.redhat.com/show_bug.cgi?id=2505927 external
https://issues.redhat.com/browse/RHEL-188045 external
https://security.access.redhat.com/data/csaf/v2/a… self
https://access.redhat.com/security/cve/CVE-2026-46936 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505001 external
https://www.cve.org/CVERecord?id=CVE-2026-46936 external
https://nvd.nist.gov/vuln/detail/CVE-2026-46936 external
https://www.oracle.com/security-alerts/cpujul2026.html external
https://www.oracle.com/security-alerts/cpujul2026… external
https://access.redhat.com/security/cve/CVE-2026-47012 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504848 external
https://www.cve.org/CVERecord?id=CVE-2026-47012 external
https://nvd.nist.gov/vuln/detail/CVE-2026-47012 external
https://access.redhat.com/security/cve/CVE-2026-47023 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505722 external
https://www.cve.org/CVERecord?id=CVE-2026-47023 external
https://nvd.nist.gov/vuln/detail/CVE-2026-47023 external
https://access.redhat.com/security/cve/CVE-2026-47052 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505215 external
https://www.cve.org/CVERecord?id=CVE-2026-47052 external
https://nvd.nist.gov/vuln/detail/CVE-2026-47052 external
https://access.redhat.com/security/cve/CVE-2026-47064 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504823 external
https://www.cve.org/CVERecord?id=CVE-2026-47064 external
https://nvd.nist.gov/vuln/detail/CVE-2026-47064 external
https://access.redhat.com/security/cve/CVE-2026-60145 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504940 external
https://www.cve.org/CVERecord?id=CVE-2026-60145 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60145 external
https://access.redhat.com/security/cve/CVE-2026-60163 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505200 external
https://www.cve.org/CVERecord?id=CVE-2026-60163 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60163 external
https://access.redhat.com/security/cve/CVE-2026-60177 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504925 external
https://www.cve.org/CVERecord?id=CVE-2026-60177 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60177 external
https://access.redhat.com/security/cve/CVE-2026-60178 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505594 external
https://www.cve.org/CVERecord?id=CVE-2026-60178 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60178 external
https://access.redhat.com/security/cve/CVE-2026-60182 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505927 external
https://www.cve.org/CVERecord?id=CVE-2026-60182 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60182 external
https://access.redhat.com/security/cve/CVE-2026-60183 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505844 external
https://www.cve.org/CVERecord?id=CVE-2026-60183 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60183 external
https://access.redhat.com/security/cve/CVE-2026-60184 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505262 external
https://www.cve.org/CVERecord?id=CVE-2026-60184 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60184 external
https://access.redhat.com/security/cve/CVE-2026-60185 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505300 external
https://www.cve.org/CVERecord?id=CVE-2026-60185 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60185 external
https://access.redhat.com/security/cve/CVE-2026-60186 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505002 external
https://www.cve.org/CVERecord?id=CVE-2026-60186 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60186 external
https://access.redhat.com/security/cve/CVE-2026-60187 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505891 external
https://www.cve.org/CVERecord?id=CVE-2026-60187 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60187 external
https://access.redhat.com/security/cve/CVE-2026-60188 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505259 external
https://www.cve.org/CVERecord?id=CVE-2026-60188 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60188 external
https://access.redhat.com/security/cve/CVE-2026-60189 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505699 external
https://www.cve.org/CVERecord?id=CVE-2026-60189 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60189 external
https://access.redhat.com/security/cve/CVE-2026-60190 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504877 external
https://www.cve.org/CVERecord?id=CVE-2026-60190 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60190 external
https://access.redhat.com/security/cve/CVE-2026-60191 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505319 external
https://www.cve.org/CVERecord?id=CVE-2026-60191 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60191 external
https://access.redhat.com/security/cve/CVE-2026-60315 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505027 external
https://www.cve.org/CVERecord?id=CVE-2026-60315 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60315 external
https://access.redhat.com/security/cve/CVE-2026-60316 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505868 external
https://www.cve.org/CVERecord?id=CVE-2026-60316 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60316 external
https://access.redhat.com/security/cve/CVE-2026-60331 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504855 external
https://www.cve.org/CVERecord?id=CVE-2026-60331 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60331 external
https://access.redhat.com/security/cve/CVE-2026-60332 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505643 external
https://www.cve.org/CVERecord?id=CVE-2026-60332 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60332 external
https://access.redhat.com/security/cve/CVE-2026-60585 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505923 external
https://www.cve.org/CVERecord?id=CVE-2026-60585 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60585 external
https://access.redhat.com/security/cve/CVE-2026-60747 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505711 external
https://www.cve.org/CVERecord?id=CVE-2026-60747 external
https://nvd.nist.gov/vuln/detail/CVE-2026-60747 external
https://access.redhat.com/security/cve/CVE-2026-61081 self
https://bugzilla.redhat.com/show_bug.cgi?id=2504779 external
https://www.cve.org/CVERecord?id=CVE-2026-61081 external
https://nvd.nist.gov/vuln/detail/CVE-2026-61081 external
https://access.redhat.com/security/cve/CVE-2026-61094 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505509 external
https://www.cve.org/CVERecord?id=CVE-2026-61094 external
https://nvd.nist.gov/vuln/detail/CVE-2026-61094 external
https://access.redhat.com/security/cve/CVE-2026-61096 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505182 external
https://www.cve.org/CVERecord?id=CVE-2026-61096 external
https://nvd.nist.gov/vuln/detail/CVE-2026-61096 external
https://access.redhat.com/security/cve/CVE-2026-61109 self
https://bugzilla.redhat.com/show_bug.cgi?id=2505310 external
https://www.cve.org/CVERecord?id=CVE-2026-61109 external
https://nvd.nist.gov/vuln/detail/CVE-2026-61109 external

Loading 1.1 MB of JSON…



Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Forecast uses a logistic model when the trend is rising, or an exponential decay model when the trend is falling. Fitted via linearized least squares.

Sightings

Author Source Type Date Other

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or observed by the user.
  • Confirmed: The vulnerability has been validated from an analyst's perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
  • Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
  • Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
  • Not confirmed: The user expressed doubt about the validity of the vulnerability.
  • Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.

Loading…

Loading…

Loading…

Related by attack behaviour

Vulnerabilities whose description is nearest to this one in the vector space of the CIRCL/vulnerability-attack-technique-biencoder model. This is a similarity search over the bi-encoder space (plain cosine), not a classification, and it has no measured accuracy.


Loading…