CVE-2026-17347 | pgadmin-org pgAdmin up to 9.16 External Command Hook subprocess.Popen MASTER_PASSWORD_HOOK os command injection

SecurityVulns

A vulnerability classified as problematic has been found in pgadmin-org pgAdmin up to 9.16. This impacts the function subprocess.Popen of the component External Command Hook. The manipulation of the argument MASTER_PASSWORD_HOOK leads to os command injection.

This vulnerability is uniquely identified as CVE-2026-17347. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More