WhisperX tag archive

#PgBouncer

This page collects WhisperX intelligence signals tagged #PgBouncer. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-05-09 07:31:49 · Mastodon:mastodon.social:#infosec

1. PgBouncer CVE-2026-6664: Unauthenticated Remote Crash via Integer Overflow in SCRAM Parsing

A high-severity integer overflow vulnerability in PgBouncer enables unauthenticated remote attackers to crash the PostgreSQL connection pooler by exploiting a flaw in SCRAM authentication packet parsing. Tracked as CVE-2026-6664 with a CVSS score of 7.5, the vulnerability affects all PgBouncer versions prior to 1.25.2 ...

The Lab · 2026-05-09 07:31:51 · Mastodon:mastodon.social:#infosec

2. CVE-2026-6665: High-Severity Vulnerability in PgBouncer Allows Malicious Backend Attack via SCRAM Authentication

A high-severity vulnerability tracked as CVE-2026-6665 has been disclosed in PgBouncer, the widely-used PostgreSQL connection pooler, exposing deployments running versions prior to 1.25.2 to potential exploitation. The flaw carries a CVSS score of 8.1 and resides in the SCRAM authentication implementation, where the co...