CVE-2026-34278
CVE-2026-34278: 2 tracked advisory records across NetApp, Red Hat. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
NetApp
1 advisory- Advisory severityMedium4.9
Medium [CVE-2026-34267 +2] April 2026 MySQL Server 8.0.0 Vulnerabilities in NetApp Products
NTAP-20260429-0004Source published Source updated
This bulletin covers 3 CVEs. The products, versions, score and guidance below describe the bulletin; check its source for applicability to this specific CVE.
Multiple NetApp products incorporate MySQL. MySQL versions 8.0.0 through 8.0.45 are susceptible to a vulnerability that could allow a high privileged attacker with network access via multiple protocols to compromise MySQL Server. Refer to “Oracle Critical Patch Update Advisory - April 2026” for additional details. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. Affected products: Active IQ Unified Manager for Microsoft Windows, Active IQ Unified Manager for VMware vSphere, OnCommand Insight. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status.
- Affected products in this advisory
- Active IQ Unified Manager for Microsoft Windows
- Active IQ Unified Manager for VMware vSphere
- OnCommand Insight
- Source-reported affected versions
- 8.0.0
- 8.0.45
- Source-reported fixed versions
- Active IQ Unified Manager for Microsoft Windows: 9.16P2
- Active IQ Unified Manager for VMware vSphere: 9.16P2
- Mitigation guidance
- Update affected NetApp products to a fixed release: Active IQ Unified Manager for Microsoft Windows: 9.16P2, Active IQ Unified Manager for VMware vSphere: 9.16P2.
- Workarounds
- Full Support versions of SnapCenter Server allow MySQL software to be upgraded within documented constraints. Consult the product documentation for supported MySQL versions and other information related to the upgrade. <br><br> In Full Support versions of OnCommand Insight the MySQL software can be upgraded after acquiring updated OnCommand Insight binaries via technical support.
Red Hat
1 advisory- Advisory severityMedium4.9
Medium [CVE-2026-34278] Optimizer unspecified vulnerability (CPU Apr 2026)
CVE-2026-34278Source published
Optimizer unspecified vulnerability (CPU Apr 2026). Red Hat rates this moderate (CVSS 4.9). Weakness: CWE-770. Affected package(s): mysql, mysql:8.0. Resolved in Red Hat advisory RHSA-2026:25919 — update the affected packages (`sudo dnf update`).
- Related products — impact not confirmed
- Red Hat Enterprise Linux 9
- mysql:8.0
- Source-reported affected versions
- mysql-0:8.0.46-1.el9_8
- mysql:8.0-8100020260609092222.489197e6
- Source-reported fixed versions
- RHSA-2026:25919
- Mitigation guidance
- Update the affected package(s) to the fixed version shipped in RHSA-2026:25919 (`sudo dnf update` / `yum update`).
Android app · Google Play
Turn CVE research into alerts on your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.