Page 1 of 1

Critical pgAdmin Flaw Allows Remote Code Execution

Posted: Tue Apr 08, 2025 1:09 pm
by Shane1145
A severe Remote Code Execution (RCE) vulnerability in pgAdmin (CVE-2025-2945), the popular PostgreSQL database management tool, has been patched after researchers discovered attackers could hijack servers through malicious API requests.

The flaw affects pgAdmin versions ≤9.1 and allows authenticated users to execute arbitrary commands on affected systems.


https://gbhackers.com/critical-pgadmin-flaw/