Skip to content
Critical CVE-2026-59971: Unauthenticated SQL Execution in MySQL MCP Server

Critical CVE-2026-59971: Unauthenticated SQL Execution in MySQL MCP Server

First seen 12 Sep 2026, 02:54 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 12, 2026 at 17:28 UTC
  • CVE-2026-59971 allows unauthenticated SQL execution in MySQL MCP Server.
  • Affected versions are prior to 0.4.2; remediation resources are available.
  • Exploitation can occur via DNS rebinding or direct exposure.

A critical vulnerability, CVE-2026-59971, has been identified in the MySQL MCP Server affecting versions prior to 0.4.2. The flaw allows unauthenticated SQL execution due to missing Origin/Host validation in SSE transport. Attackers can exploit this vulnerability via DNS rebinding or direct exposure, potentially leading to unauthorized access and data manipulation. The vulnerability impacts various systems utilizing the MySQL MCP Server, and remediation resources are available. Security professionals are urged to assess their systems and apply necessary updates to mitigate risk.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-11
CVE-2026-59971 published
CVE-2026-59971 disclosed, detailing unauthenticated SQL execution vulnerability in MySQL MCP Server.
Buttondown
2026-09-12
Vulnerability confirmed
MySQL MCP Server vulnerability confirmed to allow unauthenticated SQL execution, affecting versions below 0.4.2.
vulnfeed.it

More articles in this cluster (6)

Following this threat?

Track CVE-2026-59971 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed