CVE-2020-10996: Percona Xtradb Cluster
High severity, CVSS 8.1. EPSS: 1.5% chance of exploitation in the next 30 days.
An issue was discovered in Percona XtraDB Cluster before 5.7.28-31.41.2. A bundled script inadvertently sets a static transition_key for SST processes in place of the random key expected.
Affected products
- Percona Xtradb Cluster: before 5.7.28-31.41.2 (fixed in 5.7.28-31.41.2)
Published 2020-04-27. Last modified 2026-06-17.