THREAT OPS › Threat News › CVE-2026-60163: MySQL Group Replication unauthenticated remote arbitrary SQL execution
CVE-2026-60163: MySQL Group Replication unauthenticated remote arbitrary SQL execution
<p>Posted by manizada on Sep 14</p>Hi folks,<br /> <br /> Sharing (belatedly) the July disclosure of the MySQL CVE-2026-60163 + an<br /> update on its reclassification. The vulnerability permits an<br /> unauthenticated remote attacker to execute arbitrary SQL on the<br /> destination.<br /> <br /> Following discussion, Oracle revised the attack vector rating from 'Local'<br /> to '
Indicators of compromise
- CVE-2026-60163cve
Original source: https://seclists.org/oss-sec/2026/q3/783