Cyera Uncovers 12-Year-Old PostgreSQL RCE Vulnerability PostGREShell
A PostgreSQL RCE vulnerability that remained in the database platform for more than a decade could allow an attacker with a routine replication account to execute code on the underlying server and escalate to PostgreSQL superuser privileges. Cyera Research dubbed the vulnerability PostGREShell. It is tracked as CVE-2026-6471 and affects PostgreSQL versions dating back to version 9.4, released in 2014.…

