<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:29:32 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-07093</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-07093</link>
      <description>bdu:2026-07093</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-07093</guid>
    </item>
    <item>
      <title>BELL-CVE-2026-6638</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-6638</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: postgresql17, Alpaquita:stream: postgresql18&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: postgresql17, Alpaquita:stream: postgresql18&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-6638</guid>
    </item>
    <item>
      <title>BIT-postgresql-2026-6638 — PostgreSQL REFRESH PUBLICATION allows SQL injection via table name</title>
      <link>https://cve.radiocsirt.org/vuln/bit-postgresql-2026-6638</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: postgresql&lt;/p&gt;
&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected.  Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: postgresql&lt;/p&gt;
&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected.  Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-postgresql-2026-6638</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0595 — De multiples vulnérabilités ont été découvertes dans PostgreSQL. Certaines d'entre elles permettent à un attaquant de p…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0595</link>
      <description>certfr-2026-avi-0595</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0595</guid>
    </item>
    <item>
      <title>EUVD-2026-318523</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-318523</link>
      <description>EUVD-2026-318523</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-318523</guid>
    </item>
    <item>
      <title>fkie_cve-2026-6638</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-6638</link>
      <description>&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected.  Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected.  Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-6638</guid>
    </item>
    <item>
      <title>GHSA-3835-x2rj-c3qj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3835-x2rj-c3qj</link>
      <description>&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected.  Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected.  Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3835-x2rj-c3qj</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-6638 — PostgreSQL REFRESH PUBLICATION allows SQL injection via table name</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-6638</link>
      <description>msrc_CVE-2026-6638</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-6638</guid>
    </item>
    <item>
      <title>OESA-2026-2462 — postgresql-17 security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2462</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: postgresql-17&lt;/p&gt;
&lt;p&gt;PostgreSQL client programs&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Missing authorization in PostgreSQL CREATE TYPE allows an object creator to hijack other queries that use search_path to find user-defined types, including extension-defined types.  That is to say, the victim will execute arbitrary SQL functions of the attacker&amp;amp;apos;s choice.  Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.(CVE-2026-6472)&lt;/p&gt;
&lt;p&gt;Integer wraparound in multiple PostgreSQL server features allows an unprivileged database user to cause the server to undersize an allocation and write out-of-bounds.  This may execute arbitrary code as the operating system user running the database.  In applications that pass gigabyte-scale user inputs to the relevant database functions, the application input provider may achieve a segmentation fault.  Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.(CVE-2026-6473)&lt;/p&gt;
&lt;p&gt;Externally-controlled format string in PostgreSQL timeofday() function allows an attacker to retrieve portions of server memory, via crafted timezone zones.  Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.(CVE-2026-6474)&lt;/p&gt;
&lt;p&gt;Symlink following in PostgreSQL pg_basebackup plain format and in pg_rewind allows an origin superuser to overwrite local files, e.g. /var/lib/postgres/.bashrc, that hijack the operating system account.  It will remain the case that starting the server after these commands implicitly trusts the origin superuser, due to feat…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: postgresql-17&lt;/p&gt;
&lt;p&gt;PostgreSQL client programs&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Missing authorization in PostgreSQL CREATE TYPE allows an object creator to hijack other queries that use search_path to find user-defined types, including extension-defined types.  That is to say, the victim will execute arbitrary SQL functions of the attacker&amp;amp;apos;s choice.  Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.(CVE-2026-6472)&lt;/p&gt;
&lt;p&gt;Integer wraparound in multiple PostgreSQL server features allows an unprivileged database user to cause the server to undersize an allocation and write out-of-bounds.  This may execute arbitrary code as the operating system user running the database.  In applications that pass gigabyte-scale user inputs to the relevant database functions, the application input provider may achieve a segmentation fault.  Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.(CVE-2026-6473)&lt;/p&gt;
&lt;p&gt;Externally-controlled format string in PostgreSQL timeofday() function allows an attacker to retrieve portions of server memory, via crafted timezone zones.  Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.(CVE-2026-6474)&lt;/p&gt;
&lt;p&gt;Symlink following in PostgreSQL pg_basebackup plain format and in pg_rewind allows an origin superuser to overwrite local files, e.g. /var/lib/postgres/.bashrc, that hijack the operating system account.  It will remain the case that starting the server after these commands implicitly trusts the origin superuser, due to feat…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2462</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:10808-1 — postgresql16-16.14-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10808-1</link>
      <description>&lt;p&gt;postgresql16-16.14-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;postgresql16-16.14-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:10808-1</guid>
    </item>
    <item>
      <title>RHSA-2026:21182 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:21182</link>
      <description>&lt;p&gt;postgresql: PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege postgresql: PostgreSQL: Operating system account hijack via symlink following in pg_basebackup and pg_rewind postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory postgresql: PostgreSQL: Credential recovery via covert timing channel in MD5 password comparison postgresql: PostgreSQL: Denial of Service via uncontrolled recursion in SSL/GSS negotiation postgresql: PostgreSQL: Information disclosure via buffer over-read in pg_restore_attribute_stats() postgresql: PostgreSQL: Arbitrary code execution vulnerability in &amp;#39;refint&amp;#39; module postgresql: PostgreSQL: Arbitrary SQL execution via SQL injection in logical replication&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;postgresql: PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege postgresql: PostgreSQL: Operating system account hijack via symlink following in pg_basebackup and pg_rewind postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory postgresql: PostgreSQL: Credential recovery via covert timing channel in MD5 password comparison postgresql: PostgreSQL: Denial of Service via uncontrolled recursion in SSL/GSS negotiation postgresql: PostgreSQL: Information disclosure via buffer over-read in pg_restore_attribute_stats() postgresql: PostgreSQL: Arbitrary code execution vulnerability in &amp;#39;refint&amp;#39; module postgresql: PostgreSQL: Arbitrary SQL execution via SQL injection in logical replication&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:21182</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:1946-1 — Security update for postgresql18</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:1946-1</link>
      <description>&lt;p&gt;Security update for postgresql18&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for postgresql18&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:1946-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-6638</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-6638</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: postgresql-9.3, Ubuntu:Pro:16.04:LTS: postgresql-9.5, Ubuntu:Pro:18.04:LTS: postgresql-10, Ubuntu:20.04:LTS: postgresql-12, Ubuntu:22.04:LTS: postgresql-14, Ubuntu:24.04:LTS: postgresql-16, Ubuntu:25.10: postgresql-17, Ubuntu:26.04:LTS: postgresql-18&lt;/p&gt;
&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected. Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: postgresql-9.3, Ubuntu:Pro:16.04:LTS: postgresql-9.5, Ubuntu:Pro:18.04:LTS: postgresql-10, Ubuntu:20.04:LTS: postgresql-12, Ubuntu:22.04:LTS: postgresql-14, Ubuntu:24.04:LTS: postgresql-16, Ubuntu:25.10: postgresql-17, Ubuntu:26.04:LTS: postgresql-18&lt;/p&gt;
&lt;p&gt;SQL injection in PostgreSQL logical replication ALTER SUBSCRIPTION ... REFRESH PUBLICATION allows a subscriber table creator to execute arbitrary SQL with the subscription&amp;#39;s publication-side credentials.  The attack takes effect at the next REFRESH PUBLICATION.  Within major versions 16, 17, and 18, minor versions before PostgreSQL 18.4, 17.10, and 16.14 are affected. Versions before PostgreSQL 16 are unaffected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-6638</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1544 — PostgreSQL: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1544</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in PostgreSQL ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, um einen SQL-Injection Angriff durchzuführen, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in PostgreSQL ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, um einen SQL-Injection Angriff durchzuführen, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1544</guid>
    </item>
  </channel>
</rss>
