Mitigating MySQL Security Vulnerabilities Detected in Active IQ Unified Manager
Applies to
- Active IQ Unified Manager (AIQUM) 9.18D11 for Microsoft Windows
- MySQL Server 8.4.x (specifically 8.4.7 and earlier) bundled with AIQUM
Issue
A security scan performed on an internal AIQUM 9.18D11 (Windows) deployment reported multiple critical vulnerabilities in the bundled MySQL Server 8.4.7 component. The scan specifically flagged:
- Oracle MySQL Server 8.4.x < 8.4.8 (January 2026 CPU) and < 8.4.9 (April 2026 CPU)
- Example scan output:
Path: c:\\program files\\mysql\\mysql server 8.4\\bin\\Installed version: 8.4.7.0Fixed version: 8.4.8 or 8.4.9Critical: Apply the appropriate patch according to the Oracle Critical Patch Update advisory.
- No operational impact was reported, and the system is not internet-facing.
