Skip to content

CVE-2026-59971

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
September 12, 2026
Last Seen
September 12, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical vulnerability, CVE-2026-59971, has been identified in the MySQL MCP Server affecting versions prior to 0.4.2. The flaw allows unauthenticated SQL execution due to missing Origin/Host validation in SSE transport. Attackers can exploit this vulnerability via DNS rebinding or direct exposure...

Public Exploits

Checking GitHub for proof-of-concept code…