Multiple vulnerabilities in PostgreSQL (August 14, 2026)
Multiple vulnerabilities have been discovered in PostgreSQL. Some of them allow an attacker to cause remote arbitrary code execution, remote denial of service and data confidentiality breach.
CSIRTS triage
- What
- Multiple vulnerabilities in PostgreSQL permit remote arbitrary code execution, denial of service, and unauthorized data access.
- Who is affected
- All PostgreSQL installations running vulnerable versions.
- Urgency
- Critical; remote code execution demands immediate patching.
- Action
- Update PostgreSQL to the latest patched version from the PostgreSQL security advisories.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch PostgreSQL
Get an email when a new PostgreSQL advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1024/
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-146710.40% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 34% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-162390.59% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 45% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-157420.48% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 39% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-64690.32% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 25% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-146810.08% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 0% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-146680.45% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 38% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-162410.34% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 27% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-184080.53% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 42% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-162380.59% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 45% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-193850.60% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 46% of all EPSS-scored CVEs.
Referenced CVEs
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- high[NEW] [high] PostgreSQL: Multiple vulnerabilitiescert-bund
- highCVE-2026-6471: Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION…nvd
- mediumCVE-2026-6470: Missing authorization in PostgreSQL DDL commands allows an object creator to achieve denial of …nvd
- lowCVE-2026-6469: Incorrect ownership assignment in PostgreSQL ALTER TABLE ALTER TYPE command reassigns ownership…nvd
- highCVE-2026-6464: Untrusted data inclusion in PostgreSQL psql COPY may allow a server administrator to elicit exe…nvd
- highCVE-2026-19385: Heap buffer overflow in PostgreSQL pg_dump of long function transform lists allows an object c…nvd
- highCVE-2026-18408: Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin s…nvd
- mediumCVE-2026-18024: Buffer over-read in PostgreSQL ascii() SQL function allows a user to disclose up to 3 bytes af…nvd
- lowCVE-2026-16241: Integer underflow in PostgreSQL ECPG allows a database server administrator to achieve tempora…nvd
- highCVE-2026-16239: Type confusion in PostgreSQL "portal"/cursor lifecycle allows a user to execute arbitrary code…nvd
- highCVE-2026-16238: Type confusion in PostgreSQL pg_restore_attribute_stats() allows an object creator to execute …nvd
- highCVE-2026-15742: Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range …nvd
Recent advisories for PostgreSQL
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- high[NEW] [high] PostgreSQL: Multiple vulnerabilitiescert-bund · 2026-08-14
- medium[NEW] [medium] PostgreSQL JDBC Driver: Vulnerability allows bypassing security measurescert-bund · 2026-08-14
- medium[UPDATE] [medium] PostgreSQL JDBC Driver: Vulnerability allows Denial of Servicecert-bund · 2026-08-14
- high[UPDATE] [high] PostgreSQL: Multiple vulnerabilitiescert-bund · 2026-08-14
- mediumCVE-2026-73651: TypeORM is a TypeScript and JavaScript ORM for Node.js that supports PostgreSQL, MySQL, MariaD…nvd · 2026-08-13
- highCVE-2026-6471: Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION…nvd · 2026-08-13
More from CERT-FR Avis de sécurité
- unknownMultiple vulnerabilities in Mattermost products (August 14, 2026)2026-08-14
- unknownMultiple vulnerabilities in Ubuntu Linux kernel (August 14, 2026)2026-08-14
- unknownMultiple vulnerabilities in Red Hat Linux kernel (August 14, 2026)2026-08-14
- unknownMultiple vulnerabilities in Debian Linux kernel (August 14, 2026)2026-08-14
- unknownVulnerability in Sophos products (August 14, 2026)2026-08-14