Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpujul2026.html |
|
Wed, 22 Jul 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oracle mysql Connector/j
Oracle mysql Connectors |
|
| Vendors & Products |
Oracle mysql Connector/j
Oracle mysql Connectors |
Tue, 21 Jul 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.7.0-9.7.1. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Connectors. While the vulnerability is in MySQL Connectors, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Connectors accessible data. CVSS 3.1 Base Score 7.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N). | |
| First Time appeared |
Oracle
Oracle mysql Connector\/j |
|
| CPEs | cpe:2.3:a:oracle:mysql_connector\/j:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle mysql Connector\/j |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-07-21T21:36:01.242Z
Reserved: 2026-07-08T15:51:40.546Z
Link: CVE-2026-60586
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-22T09:00:10Z
No weakness.