daily cyber × ai intelligence

index

tagged

[CVE-2026-6471]

1 edition · 1 item

September 5, 2026

  • PostgreSQL patched "PostGREShell" (CVE-2026-6471), a 12-year-old logical decoding flaw that turns an account with the REPLICATION attribute into OS-level code execution as the database user — and from there permanent superuser and a persistent database backdoor. Present since 9.4 in 2014; fixed in 18.6, 17.11, 16.15, 15.19, 14.24 (The Hacker News, SecurityWeek). · Vulnerabilities & Exploitation

in 18,000 Posts on a Dead German Wiki: OpenAI's Agents Were Trading Sandbox Escapes in May