Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). The supported version that is affected is 26.7.0. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Connectors executes to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Connectors and unauthorized read access to a subset of MySQL Connectors accessible data. CVSS 3.1 Base Score 6.8 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H).
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspuaug2026.html |
|
History
Thu, 20 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Denial of Service and Data Exposure via Oracle MySQL Connector/ODBC 26.7.0 |
Thu, 20 Aug 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Denial of Service and Data Exposure via Oracle MySQL Connector/ODBC 26.7.0 |
Wed, 19 Aug 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | MySQL Connector/ODBC 26.7.0 Local Denial of Service and Sensitive Data Exposure | |
| Weaknesses | CWE-200 CWE-285 |
Wed, 19 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Wed, 19 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oracle mysql Connector/odbc
Oracle mysql Connectors |
|
| Vendors & Products |
Oracle mysql Connector/odbc
Oracle mysql Connectors |
Wed, 19 Aug 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | MySQL Connector/ODBC 26.7.0 Local Denial of Service and Sensitive Data Exposure | |
| Weaknesses | CWE-200 CWE-285 |
Tue, 18 Aug 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). The supported version that is affected is 26.7.0. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Connectors executes to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Connectors and unauthorized read access to a subset of MySQL Connectors accessible data. CVSS 3.1 Base Score 6.8 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H). | |
| First Time appeared |
Oracle
Oracle mysql Connector\/odbc |
|
| CPEs | cpe:2.3:a:oracle:mysql_connector\/odbc:26.7.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle mysql Connector\/odbc |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published: 2026-08-18T21:03:26.154Z
Updated: 2026-08-19T16:02:22.938Z
Reserved: 2026-08-04T22:06:34.616Z
Link: CVE-2026-71084
No data.
Status : Awaiting Analysis
Published: 2026-08-18T21:18:08.637
Modified: 2026-08-20T13:08:14.613
Link: CVE-2026-71084
No data.