CVE-2026-6637HIGH 8.8EPSS p29.4%

CVE-2026-6637CVE-2026-6637

Description

Stack buffer overflow in PostgreSQL module "refint" allows an unprivileged database user to execute arbitrary code as the operating system user running the database. A distinct attack is possible if the application declares a user-controlled column as a "refint" cascade primary key and facilitates user-controlled updates to that column. In that case, a SQL injection allows a primary key update value provider to execute arbitrary SQL as the database user performing the primary key update. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.

Scoring

CVSS 3.18.8 (HIGH)
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS0.38% probability of exploitation · percentile 29.4% · 2026-06-19T12:03:05Z
Published2026-05-14
Last modified2026-05-18

Underlying weaknesses· 2

CWE-89CWE-121

References

  1. https://www.postgresql.org/support/security/CVE-2026-6637/

2

TypeTargetConfidenceTier
WeaknessStack-based Buffer Overflowcwe-1210%live
WeaknessImproper Neutralization of Special Elements used in an SQL Command ('SQL Injection')cwe-890%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2026-2005
CVE
CVE-2026-2006
CVE
CVE-2026-2007
CVE
CVE-2026-6473
CVE
CVE-2026-2004
CVE
CVE-2026-6477
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.