Medium severity5.8NVD Advisory· Published Apr 21, 2026· Updated May 5, 2026
CVE-2026-34318
CVE-2026-34318
Description
Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: Core Client). Supported versions that are affected are 8.0.0-8.0.45, 8.4.0-8.4.8 and 9.0.0-9.6.0. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Shell. While the vulnerability is in MySQL Shell, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Shell accessible data. CVSS 3.1 Base Score 5.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N).
Affected products
3- Range: 8.0.0-8.0.45, 8.4.0-8.4.8, 9.0.0-9.6.0
Patches
Vulnerability mechanics
References
1- www.oracle.com/security-alerts/cpuapr2026.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.