menu
techminis

A naukri.com initiative

google-web-stories
source image

Securityaffairs

2M

read

64

img
dot

Image Credit: Securityaffairs

Experts discovered PostgreSQL flaw chained with BeyondTrust zeroday in targeted attacks

  • Threat actors are exploiting a zero-day SQL injection vulnerability in PostgreSQL, according to researchers from cybersecurity firm Rapid7.
  • The vulnerability, tracked as CVE-2025-1094, is an SQL injection issue in PostgreSQL's psql tool caused by improper neutralization of quoting syntax in libpq functions.
  • This flaw allows attackers to inject malicious SQL commands and potentially achieve remote code execution.
  • PostgreSQL has released patches in versions 17.3, 16.7, 15.11, 14.16, and 13.19 to address the vulnerability.

Read Full Article

like

3 Likes

For uninterrupted reading, download the app