NCSC NL
NCSC Score ? NCSC heeft een automatisch gegenereerde score ontwikkeld om de relevantie van bekende kwetsbaarheden en blootstellingen per CVE-ID (Common Vulnerabilities and Exposures) te bepalen. De score geeft een inschatting van de relevantie voor Nederlandse organisaties. De NCSC-score is machine-learning gedreven en weegt verschillende eigenschappen van een CVE, waaronder Common Vulnerability Scoring System (CVSS) informatie, geraakte producten, gerelateerd nieuws en vele andere aspecten. De score is voor elke CVE in onze kwetsbaarheden-database beschikbaar en wordt automatisch geactualiseerd wanneer er nieuwe informatie over de CVE beschikbaar komt. Meer informatie
NCSC heeft een automatisch gegenereerde score ontwikkeld om de relevantie van bekende kwetsbaarheden en blootstellingen per CVE-ID (Common Vulnerabilities and Exposures) te bepalen. De score geeft een inschatting van de relevantie voor Nederlandse organisaties.
De NCSC-score is machine-learning gedreven en weegt verschillende eigenschappen van een CVE, waaronder Common Vulnerability Scoring System (CVSS) informatie, geraakte producten, gerelateerd nieuws en vele andere aspecten. De score is voor elke CVE in onze kwetsbaarheden-database beschikbaar en wordt automatisch geactualiseerd wanneer er nieuwe informatie over de CVE beschikbaar komt.
VENDOR FIX as product remediation category
There is product data available from source Certbundde
There is product data available from source Oracle
Is related to (a version of) an uncommon product
cveprojectv5 -
Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell for VS Code). The supported version that is affected is 2026.2.0+9.6.1. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Shell. While the vulnerability is in MySQL Shell, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Shell. CVSS 3.1 Base Score 8.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
oracle -
Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell for VS Code). The supported version that is affected is 2026.2.0+9.6.1. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Shell. While the vulnerability is in MySQL Shell, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Shell. CVSS 3.1 Base Score 8.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
osv -
Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell for VS Code). The supported version that is affected is 2026.2.0+9.6.1. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Shell. While the vulnerability is in MySQL Shell, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Shell. CVSS 3.1 Base Score 8.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
nvd -
Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell for VS Code). The supported version that is affected is 2026.2.0+9.6.1. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Shell. While the vulnerability is in MySQL Shell, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Shell. CVSS 3.1 Base Score 8.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
Oracle customers with valid support contracts
Source - cveprojectv5
Reference - cveprojectv5; nvd; oracle; osv
Reference - certbundde
Reference - certbundde
Reference - certbundde
Reference - certbundde
Reference - certbundde
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
