PgBouncer 1.26.0 has been released. This release fixes three CVEs: CVE-2026-19888: DoS due to crash, triggerable by unauthenticated clients. Caused by a SCRAM client-final-message without a nonce.
PgBouncer 1.26.0 released - Fixes three CVEs
calendar_today
September 23, 2026
domain
postgresql