Improper input validation in MySQL Cluster - CVE-2026-46863
Published: September 14, 2026
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Server: Connection Handling component in MySQL Cluster. A remote non-authenticated attacker can exploit this vulnerability to perform a denial of service (DoS) attack.
Affected software
MySQL Server
Fedora
mysql8.4
How to mitigate CVE-2026-46863
MySQL Server - addressed in versions 8.4.10, 9.7.1
mysql8.4 - addressed in versions 8.4.10-1.fc43, 8.4.10-1.fc44