CVE-2026-19888 | PostgreSQL PgBouncer up to 1.25.2 SCRAM client-final-message parser null pointer dereference

SecurityVulns

A vulnerability classified as problematic has been found in PostgreSQL PgBouncer up to 1.25.2. This affects an unknown part of the component SCRAM client-final-message parser. The manipulation leads to null pointer dereference.

This vulnerability is uniquely identified as CVE-2026-19888. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More