Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

ubuntu логотип

CVE-2026-6471

20 дней назад

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
EPSS: Низкий
redhat логотип

CVE-2026-6471

20 дней назад

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2026-6471

20 дней назад

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.6, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
EPSS: Низкий
msrc логотип

CVE-2026-6471

18 дней назад

PostgreSQL logical decoding can dlopen arbitrary file

EPSS: Низкий
debian логотип

CVE-2026-6471

20 дней назад

Missing authorization in PostgreSQL logical decoding allows a non-supe ...

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-r26j-h78w-pjqm

19 дней назад

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
EPSS: Низкий
fstec логотип

BDU:2026-11977

20 дней назад

Уязвимость механизма логического декодирования (logical decoding) системы управления базами данных PostgreSQL, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3793-1

8 дней назад

Security update for postgresql14

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3794-1

8 дней назад

Security update for postgresql16

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-6471

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
0%
Низкий
20 дней назад
redhat логотип
CVE-2026-6471

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
0%
Низкий
20 дней назад
nvd логотип
CVE-2026-6471

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.6, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
0%
Низкий
20 дней назад
msrc логотип
CVE-2026-6471

PostgreSQL logical decoding can dlopen arbitrary file

0%
Низкий
18 дней назад
debian логотип
CVE-2026-6471

Missing authorization in PostgreSQL logical decoding allows a non-supe ...

CVSS3: 7.2
0%
Низкий
20 дней назад
github логотип
GHSA-r26j-h78w-pjqm

Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.

CVSS3: 7.2
0%
Низкий
19 дней назад
fstec логотип
BDU:2026-11977

Уязвимость механизма логического декодирования (logical decoding) системы управления базами данных PostgreSQL, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.2
0%
Низкий
20 дней назад
suse-cvrf логотип
SUSE-SU-2026:3793-1

Security update for postgresql14

8 дней назад
suse-cvrf логотип
SUSE-SU-2026:3794-1

Security update for postgresql16

8 дней назад

Уязвимостей на страницу