PT-2025-48983 · Pgbouncer+3 · Pgbouncer+3

Jason Tsang

·

Published

2025-12-03

·

Updated

2026-02-09

·

CVE-2025-12819

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PgBouncer versions prior to 1.25.1
Description A flaw exists in PgBouncer’s authentication process due to an untrusted search path within the auth query connection handler. This allows an unauthenticated attacker to execute arbitrary SQL code during authentication by manipulating the search path parameter in the StartupMessage. The search path parameter is used to define the schema search order for database objects.
Recommendations Upgrade to PgBouncer version 1.25.1 or later.

Fix

Untrusted Search Path

Weakness Enumeration

Related Identifiers

AZL-71249
AZL-71438
BDU:2025-15208
BIT-PGBOUNCER-2025-12819
CVE-2025-12819
DLA-4422-1

Affected Products

Alt Linux
Debian
Pgbouncer
Red Os