MEDIUMVulnerability

CVE-2026-61082

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Connectors accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N).

Properties

severity
MEDIUM
score
6.5
epss_score
0.00147
cve_id
CVE-2026-61082
vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
published_at
2026-07-21T22:18:39.093
last_modified
2026-09-03T18:40:52.310
epss_percentile
0.04271

Related Entities (8)

ENRICHED_BY (1)

[Source]FIRST EPSS

DESCRIBED_BY (1)

[Source]NVD

AFFECTS_PRODUCT (2)

[Product]
[Product]

HAS_WEAKNESS (4)

[Weakness]Improper Authorization
[Weakness]URL Redirection to Untrusted Site ('Open Redirect')
[Weakness]Cross-Site Request Forgery (CSRF)
[Weakness]Exposure of Sensitive Information to an Unauthorized Actor

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-61082 — Ninja Signal Threat Intelligence | Ninja Signal