Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

fstec логотип

BDU:2026-06727

3 месяца назад

Уязвимость команды KILL_CLIENT программного обеспечения для пула соединения в PostgreSQL PgBouncer, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.3
EPSS: Низкий
redos логотип

ROS-20260714-73-0048

18 дней назад

Уязвимость pgbouncer

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2026-6667

3 месяца назад

PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization) could run this command. It would have been correct to allow only users listed in the admin_users parameter.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-6667

3 месяца назад

PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization) could run this command. It would have been correct to allow only users listed in the admin_users parameter.

CVSS3: 4.3
EPSS: Низкий
msrc логотип

CVE-2026-6667

3 месяца назад

PgBouncer missing authorization check in KILL_CLIENT admin command

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2026-6667

3 месяца назад

PgBouncer before 1.25.2 did not perform an appropriate authorization c ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-gc77-jrv9-6fjp

3 месяца назад

PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization) could run this command. It would have been correct to allow only users listed in the admin_users parameter.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-06727

Уязвимость команды KILL_CLIENT программного обеспечения для пула соединения в PostgreSQL PgBouncer, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.3
0%
Низкий
3 месяца назад
redos логотип
ROS-20260714-73-0048

Уязвимость pgbouncer

CVSS3: 4.3
0%
Низкий
18 дней назад
ubuntu логотип
CVE-2026-6667

PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization) could run this command. It would have been correct to allow only users listed in the admin_users parameter.

CVSS3: 4.3
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6667

PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization) could run this command. It would have been correct to allow only users listed in the admin_users parameter.

CVSS3: 4.3
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-6667

PgBouncer missing authorization check in KILL_CLIENT admin command

CVSS3: 4.3
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6667

PgBouncer before 1.25.2 did not perform an appropriate authorization c ...

CVSS3: 4.3
0%
Низкий
3 месяца назад
github логотип
GHSA-gc77-jrv9-6fjp

PgBouncer before 1.25.2 did not perform an appropriate authorization check for the KILL_CLIENT admin command. All users with access to the administration console (which itself requires authorization) could run this command. It would have been correct to allow only users listed in the admin_users parameter.

CVSS3: 4.3
0%
Низкий
3 месяца назад

Уязвимостей на страницу