Public PoC Released for 20-Year-Old PostgreSQL pgcrypto RCE Flaw
VPN Central [Unofficial]
May 22, 2026
§A public proof-of-concept exploit has renewed attention on CVE-2026-2005, a serious PostgreSQL vulnerability in the pgcrypto extension. The flaw can allow code execution as the operating system user running the database when an attacker can reach the vulnerable pgcrypto code path. The vulnerability affects PostgreSQL versions before 18.2, 17.8, 16.12, 15.16, and 14.21. The PostgreSQL […]
The post Public PoC Released for 20-Year-Old PostgreSQL pgcrypto RCE Flaw appeared first on VPN Central.
Discussion in the ATmosphere