High [CVE-2026-60315] X Plugin unspecified vulnerability (CPU Jul 2026)
This high-severity Red Hat Linux advisory covers CVE-2026-60315 affecting Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9.
Android app · Google Play
Monitor future Red Hat Linux CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Summary
Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1.
Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server, MySQL Cluster.
Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server, MySQL Cluster and unauthorized read access to a subset of MySQL Server, MySQL Cluster accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Availability impacts).
CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H). Red Hat Product Security rates the severity of this flaw as determined by the Oracle MySQL Critical Patch Update.
Red Hat severity: Important — CVSS 8.2 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H). Weakness: CWE-248.
Affected Red Hat products: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9. Red Hat fixing advisory: RHSA-2026:56007, RHSA-2026:56936, RHSA-2026:56973.
Affected products named by the advisory: Red Hat package: mysql8.4.
- 8.4.0-8
- 4.10
- 9.7.0-9
Official advisory · high-confidence parse· fetched 8 days ago·verify at source
- mysql8.4-0:8.4.11-1.el10_2
- mysql:8.4-8100020260812072430.489197e6
- mysql:8.4-9080020260812072812.rhel9
- RHSA-2026:56007
- RHSA-2026:56936
- RHSA-2026:56973
Official advisory · high-confidence parse· fetched 8 days ago·verify at source
Mitigation
Upgrade to a fixed release: mysql8.4-0:8.4.11-1.el10_2, mysql:8.4-8100020260812072430.489197e6, mysql:8.4-9080020260812072812.rhel9, RHSA-2026:56007, RHSA-2026:56936, RHSA-2026:56973. That is the remediation for this advisory.
The vendor advisory may list additional interim mitigations or workarounds not captured here — review it before change work.
Official advisory · high-confidence parse· fetched 8 days ago·verify at source
Discussion(0)
No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.
Sign in to join the discussion.