Vulnerability Bulletins

CVE-2026-2005

   
Affected software POSTGRESQL
 
Heap buffer overflow in PostgreSQL pgcrypto allows a ciphertext provider to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-2005