💾 DownloadsGitHub Release: ollama/ollama v0.34.2-rc3 (17.09.2026)(17.09.2026 um 20:49 Uhr)
💾 DownloadsGitHub Release: anomalyco/opencode v2.0.7 (17.09.2026)(17.09.2026 um 21:29 Uhr)
🔧 AI Nachrichten OpenAI: ChatGPT for Word is now available(17.09.2026 um 21:12 Uhr)
🍏 iOS / Mac OSSiri AI Hits and Misses(17.09.2026 um 21:02 Uhr)
🔧 ProgrammierungWhy client SDK generation belongs in the open(17.09.2026 um 21:18 Uhr)
💾 DownloadsGitHub Release: ollama/ollama v0.34.2-rc3 (17.09.2026)(17.09.2026 um 20:49 Uhr)
💾 DownloadsGitHub Release: anomalyco/opencode v2.0.7 (17.09.2026)(17.09.2026 um 21:29 Uhr)
🔧 AI Nachrichten OpenAI: ChatGPT for Word is now available(17.09.2026 um 21:12 Uhr)
🍏 iOS / Mac OSSiri AI Hits and Misses(17.09.2026 um 21:02 Uhr)
🔧 ProgrammierungWhy client SDK generation belongs in the open(17.09.2026 um 21:18 Uhr)
🕵️ Sicherheitslücken 🕛 vor 17 Tagen 1 Min Lesezeit CVE-2026-15741
0

CVE-2026-15741 | PostgreSQL up to 18.4 Deparse EXTRACT sql injection (WID-SEC-2026-2844)

Cyber Threat & Vulnerability Dossier
ANGRIPPSVEKTOR
🌐 Netzwerk (Remote)
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
🗄️ Daten-Exfiltration (SQLi) / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-89: SQL Injection
Handlungsempfehlung: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
Im CVE-Radar öffnen
↗ Quelle (VulDB Updates)
🔬 IoC Intelligence (1 Indikatoren erkannt)
CVE-2026-15741
🗣️ Stimme:

A vulnerability was found in PostgreSQL up to 14.23/15.18/16.14/17.10/18.4. It has been declared as critical. This affects the function EXTRACT of the component Deparse. The manipulation results in sql injection. This vulnerability is known as CVE-2026-15741. It is possible to launch the attack remotely. No exploit is available. It is recommended...

Vollständiges Original-Advisory
Ausführliche Details, Exploit-Analyse & Hersteller-Stellungnahme auf vuldb.com.
↗ Original-Artikel auf vuldb.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
I wore flagship earbuds from Sony and Sennheiser – it’s a tough call, but one gets it right
1 Quelle
This sleep-tracking alarm clock doesn’t include a ‘score’, and that’s why I love it
1 Quelle
Why client SDK generation belongs in the open