CVE-2026-6475
HIGHDescription
Symlink following in PostgreSQL pg_basebackup plain format and in pg_rewind allows an origin superuser to overwrite local files, e.g. /var/lib/postgres/.bashrc, that hijack the operating system account. It will remain the case that starting the server after these commands implicitly trusts the origin superuser, due to features like shared_preload_libraries. Hence, the attack has practical implications only if one takes relevant action between these commands and server start, like moving the files to a different VM or snapshotting the VM. Versions before PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 are affected.
Is your site exposed to CVE-2026-6475?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| postgresql | postgresql |
| postgresql | postgresql |
| postgresql | postgresql |
| postgresql | postgresql |
| postgresql | postgresql |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2026-6475? +
How severe is CVE-2026-6475? +
What products are affected by CVE-2026-6475? +
How do I check if I'm vulnerable to CVE-2026-6475? +
Related Vulnerabilities
pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes …
Gogs is an open source self-hosted Git service. Prior to 0.14.3, (*Repository).UploadRepoFiles checks for symlinks only on the leaf of …
`zip` is a zip library for rust which supports reading and writing of simple ZIP files. In the archive extraction …
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Insecure handling of …
Forgejo before 13.0.2 allows attackers to write to unintended files, and possibly obtain server shell access, because of mishandling of …
Cargo incorrectly handled symlinks inside of crate tarballs downloaded from third-party registries, allowing a malicious crate to override the source …