|
| 1 | +# Percona XtraDB Cluster 8.4.10-10 (2026-07-) |
| 2 | + |
| 3 | +!!! note "" |
| 4 | + |
| 5 | + Percona XtraDB Cluster 8.4.9-9 was not released; 8.4.10-10 is the next build in this series. This release includes enhancements and bug fixes from MySQL 8.4.9 and MySQL 8.4.10. |
| 6 | + |
| 7 | +Percona XtraDB Cluster (PXC) supports critical business applications in both cloud and on-premises environments, including public, private, and hybrid setups. Our free, open source, enterprise-grade solution includes the high availability and security features your business requires to meet your customer expectations and business goals. |
| 8 | + |
| 9 | +Percona XtraDB Cluster 8.4.10-10 is based on Percona Server for MySQL and includes all improvements and bug fixes available in the [Percona Server for MySQL 8.4.10-10 (2026-06-30) release notes](https://docs.percona.com/percona-server/8.4/release-notes/8.4.10-10.html). |
| 10 | + |
| 11 | +## Release highlights |
| 12 | + |
| 13 | +### Percona Server for MySQL 8.4.10-10 |
| 14 | + |
| 15 | +Percona Server for MySQL 8.4.10-10 introduces the following new features and improvements: |
| 16 | + |
| 17 | +* Integrates the new Key Management Interoperability Protocol (KMIP) library into the key management component. |
| 18 | + |
| 19 | +* Adds JSONL (JSON Lines) output format for Audit Log Filter. |
| 20 | + |
| 21 | +* Increases the verbosity of the data dictionary upgrade process, making it easier to diagnose issues that occur during upgrade. |
| 22 | + |
| 23 | +* Logs SQL statements for the Audit Log Filter `table_access` class and the `read` and `insert` subclasses. |
| 24 | + |
| 25 | +* Flushes the audit log buffer on server shutdown when the `ASYNCHRONOUS` logging strategy is in use, preventing the loss of buffered events. |
| 26 | + |
| 27 | +* Reduces memory pressure in the Audit Log Filter component caused by VFS buffering. |
| 28 | + |
| 29 | +* Aligns the `audit_log_filter.format=NEW` output between the 8.0 plugin and the 8.4 component. |
| 30 | + |
| 31 | +* Optimizes performance for `mem_root_deque`. |
| 32 | + |
| 33 | +### MySQL 8.4.10 |
| 34 | + |
| 35 | +Improvements and bug fixes provided by Oracle for MySQL 8.4.10 and included in Percona Server for MySQL are the following: |
| 36 | + |
| 37 | +* Connection attribute parsing could read a length-encoded size field before verifying that the complete field was present in the packet, leading to an out-of-bounds read. A size check is now performed before reading the field. (Bug #39116965) |
| 38 | + |
| 39 | +* A regression in row size estimation for `ROW_FORMAT=COMPRESSED` tables could cause `CREATE TABLE` to fail with `Row size too large` for tables that were accepted in earlier releases. (Bug #39129182, Bug #120323) |
| 40 | + |
| 41 | +Find the complete list of bug fixes and changes in the [MySQL 8.4.10 release notes](https://dev.mysql.com/doc/relnotes/mysql/8.4/en/news-8-4-10.html). |
| 42 | + |
| 43 | +## Security updates |
| 44 | + |
| 45 | +This release addresses the following security vulnerabilities: |
| 46 | + |
| 47 | +* [CVE-2026-46850](https://www.cve.org/CVERecord?id=CVE-2026-46850): A vulnerability in MySQL Shell (Shell for VS Code) allows a low-privileged attacker with network access via HTTP to compromise MySQL Shell, with potential scope change impact on additional products (CVSS 3.1 Base Score 9.9). |
| 48 | + |
| 49 | +* [CVE-2026-46860](https://www.cve.org/CVERecord?id=CVE-2026-46860): A vulnerability in MySQL Router allows an unauthenticated attacker with network access via HTTP to compromise MySQL Router (CVSS 3.1 Base Score 9.8). |
| 50 | + |
| 51 | +* [CVE-2026-46861](https://www.cve.org/CVERecord?id=CVE-2026-46861): A vulnerability in MySQL NDB Cluster (NDB Operator) allows a low-privileged attacker with network access via HTTP to access or modify critical data, with potential scope change impact (CVSS 3.1 Base Score 9.6). |
| 52 | + |
| 53 | +* [CVE-2026-46862](https://www.cve.org/CVERecord?id=CVE-2026-46862): A vulnerability in MySQL Router allows an unauthenticated attacker with network access via TLS to cause a hang or repeatable unexpected exit of MySQL Router (CVSS 3.1 Base Score 7.5). |
| 54 | + |
| 55 | +* [CVE-2026-46863](https://www.cve.org/CVERecord?id=CVE-2026-46863): A vulnerability in MySQL Server connection handling allows an unauthenticated attacker with network access via multiple protocols to cause a hang or repeatable unexpected exit of the server (CVSS 3.1 Base Score 7.5). |
| 56 | + |
| 57 | +* [CVE-2026-46869](https://www.cve.org/CVERecord?id=CVE-2026-46869): A vulnerability in MySQL Shell (Dump and Load) allows an unauthenticated attacker with network access to access critical data when user interaction is required (CVSS 3.1 Base Score 6.5). |
| 58 | + |
| 59 | +* [CVE-2026-46870](https://www.cve.org/CVERecord?id=CVE-2026-46870): A vulnerability in MySQL Shell (Shell for VS Code) allows a low-privileged attacker with network access to compromise MySQL Shell, with potential scope change impact (CVSS 3.1 Base Score 8.5). |
| 60 | + |
| 61 | +* [CVE-2026-46871](https://www.cve.org/CVERecord?id=CVE-2026-46871): A vulnerability in MySQL Shell (Shell for VS Code) allows a low-privileged attacker with network access via multiple protocols to access critical data (CVSS 3.1 Base Score 6.5). |
| 62 | + |
| 63 | +## Bug fixes |
| 64 | + |
| 65 | +* [PXC-4683](https://perconadev.atlassian.net/browse/PXC-4683): Fixed an issue where a node could leave the cluster after an error in a stored procedure. |
| 66 | + |
| 67 | +* [PXC-4799](https://perconadev.atlassian.net/browse/PXC-4799): Fixed an issue where a backup node could fail with an `Inconsistency` error when a pending DDL operation conflicted with `FLUSH TABLES WITH READ LOCK` (FTWRL). |
| 68 | + |
| 69 | +* [PXC-4805](https://perconadev.atlassian.net/browse/PXC-4805): The `mysqlchk` script was missing from the Percona XtraDB Cluster 8.4 package and binary tarball distributions. |
| 70 | + |
| 71 | +* [PXC-4825](https://perconadev.atlassian.net/browse/PXC-4825): Fixed an issue where `performance_schema.variables_by_thread` did not include `wsrep` threads. |
| 72 | + |
| 73 | +* [PXC-4844](https://perconadev.atlassian.net/browse/PXC-4844): Fixed an issue where inconsistency voting under high load could trigger an internal deadlock and permanently pause Flow Control. |
| 74 | + |
| 75 | +* [PXC-4849](https://perconadev.atlassian.net/browse/PXC-4849): Fixed an issue where a node could fail to join the cluster after a successful State Snapshot Transfer (SST) because of an Event Scheduler task and the `read_only` setting. |
| 76 | + |
| 77 | +* [PXC-4887](https://perconadev.atlassian.net/browse/PXC-4887): Fixed an issue where `CREATE ROLE` statements were not replicated when the validate password plugin was enabled. |
| 78 | + |
| 79 | +* [PXC-4963](https://perconadev.atlassian.net/browse/PXC-4963): Fixed an issue where `GRANT` privileges differed between in-place upgraded and newly installed Percona XtraDB Cluster instances. |
| 80 | + |
| 81 | +* [PXC-5233](https://perconadev.atlassian.net/browse/PXC-5233): Fixed an issue where the Percona XtraDB Cluster 8.4 entrypoint invoked the removed `mysql_upgrade` binary, causing an unexpected exit loop during rolling upgrades from Percona XtraDB Cluster 8.0. |
| 82 | + |
| 83 | +* [PXC-5229](https://perconadev.atlassian.net/browse/PXC-5229): Fixed an issue where `WSREP` applier threads could inherit `tx_read_only=true`, causing replication failures and node inconsistency. |
| 84 | + |
| 85 | +## Builds and packaging |
| 86 | + |
| 87 | +* Percona Server for MySQL releases include a mixture of PGO and non-PGO builds. Where Profile-Guided Optimization (PGO) is enabled, the compiler uses runtime profiling data from representative workloads to guide optimization, which can improve throughput and reduce latency compared with non-PGO builds. |
| 88 | + |
| 89 | +* See [Profile-Guided Optimization (PGO) and non-PGO builds](https://docs.percona.com/percona-server/8.4/pgo.html) for benefits, considerations, and which build you receive for your platform. |
| 90 | + |
| 91 | +## Useful links |
| 92 | + |
| 93 | +* The [Percona XtraDB Cluster installation instructions](https://www.percona.com/doc/percona-xtradb-cluster/8.4/install/index.html) |
| 94 | + |
| 95 | +* The [Percona XtraDB Cluster downloads](https://www.percona.com/mysql/software/percona-xtradb-cluster) |
| 96 | + |
| 97 | +* The [Percona XtraDB Cluster GitHub location](https://github.com/percona/percona-xtradb-cluster) |
| 98 | + |
| 99 | +* To contribute to the documentation, review the [Documentation Contribution Guide](https://github.com/percona/pxc-docs/blob/8.4/contributing.md) |
| 100 | + |
0 commit comments