CVE
CVE-2026-6665
0field notes · 1digest CVSS 8.1
Daily digests
A buffer overflow in PgBouncer's SCRAM authentication handling could let an attacker crash the connection pooler or potentially run code on the host. Exploitation requires the attacker to reach PgBouncer's listening port and initiate a SCRAM auth exchange, but no valid credentials are needed to trigger the overflow.