CVE-2026-48773Disclosure(proxysql / proxysql)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch proxysql proxysql systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. Versions 2.0.18 through 3.0.8 have a pre-authentication heap memory corruption vulnerability in the MySQL and PostgreSQL protocol first-read paths. A remote unauthenticated client can declare an oversized first packet length, and ProxySQL passes that attacker-controlled length directly to `recv()` while writing into a fixed 32 KB input queue. Version 3.0.9 patches the issue.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • proxysql

Threat summary

  • Patch or workaround signal is available
  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 6 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 3 mentions (2026-06-19); latest day: 1
  • 7 total mentions across 5 days

Affected systems

Vendors
Products
proxysql

Deep dive

Activity timeline7 mentions / 5d
01223Mentions · 2026-06-19: 3Mentions · 2026-06-20: 1Mentions · 2026-06-21: 1Mentions · 2026-06-22: 1Mentions · 2026-06-26: 1Patch / Workaround · 2026-06-21: 1Patch / Workaround · 2026-06-22: 1Patch / Workaround · 2026-06-26: 1Technical Details · 2026-06-19: 2Technical Details · 2026-06-20: 1Technical Details · 2026-06-21: 1Technical Details · 2026-06-22: 1Technical Details · 2026-06-26: 106-1906-2006-2106-2206-26
Signal classification3 categories
Disclosure
342.9%
Patch
342.9%
General
114.3%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-06-193
Disclosure2General1
2026-06-201
Disclosure1
2026-06-211
Patch1
2026-06-221
Patch1
2026-06-261
Patch1
Full discourse7 posts
  • Aretiq.AI@AretiqAI
    Disclosure

    ARETIQ Daily Vulnerability Bulletin — June 19, 2026 🔴 CRITICAL: CVE-2026-55255 (langflow-ai/langflow) AAS 13.1 🔴 CRITICAL: CVE-2026-48772 (sysown/proxysql) AAS 12.8 🔴 CRITICAL: CVE-2026-48773 (sysown/proxysql) AAS 12.4 15 vulnerabilities — CRITICAL: 3, HIGH: 12 Full bulletin: https://aretiq.ai/bulletins/2026-06-19/

    Post summary

    This bulletin lists three critical CVEs for langflow-ai/langflow and sysown/proxysql, providing identifiers and AAS ratings but no PoC, exploitation details, patches, or technical specifics.

    01030126
    190 followersView on X
  • SecAlerts@SecAlertsCo
    Patch

    🔓 ProxySQL CVE-2026-48773: pre-auth heap overflow, CVSS 9.8. No credentials needed to corrupt memory via MySQL/PostgreSQL first-packet. Versions 2.0.18-3.0.8 affected. Upgrade to v3.0.9 now. #ProxySQL #infosec https://secalerts.co/vulnerability/CVE-2026-48773?utm_campaign=x https://t.co/hPzsmr1DPf

    Post summary

    ProxySQL CVE-2026-48773 is a pre‑authentication heap overflow with a CVSS of 9.8; affected versions 2.0.18‑3.0.8 are mitigated by upgrading to v3.0.9.

    0000097
    846 followersView on X
  • CCB Alert@CCBalert
    Patch

    Warning: Critical vulnerabilities in #ProxySQL allow remote attackers to corrupt heap memory and bypass ACLs. #CVE-2026-48772 CVSS(3.1): 10.0 | #CVE-2026-48773 CVSS(3.1): 9.8. Read the advisory https://ccb.belgium.be/advisories/warning-acl-bypass-and-heap-memory-corruption-proxysql-can-be-exploited-compromise and #Patch #Patch #Patch

    Post summary

    An advisory warns of critical ProxySQL heap corruption and ACL bypass vulnerabilities, provides CVSS scores, and directs readers to a patch advisory.

    00000374
    7.2K followersView on X
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Patch

    #CVE-2026-48773 - Critical #RCE in #Proxysql. Pre-auth heap memory corruption via oversized packet. #CVSS 9.8. Patch to v3.0.9 immediately. #cybersecurity #devsecops #100daysofcode #infosec #CVEAlert More FREE info: https://www.valtersit.com/cve/CVE-2026-48773/

    Post summary

    Alert for CVE-2026-48773: a critical RCE due to pre‑authentication heap memory corruption in ProxySQL (CVSS 9.8) with an immediate patch to v3.0.9 available.

    0000053
    953 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-48773 Pre-Authentication Heap Memory Corruption in ProxySQL 2.0.18 Through 3.0.8 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-48773

    Post summary

    The entry announces CVE-2026-48773 as a pre‑authentication heap memory corruption issue affecting ProxySQL 2.0.18–3.0.8, but supplies no evidence of a PoC, exploit code, active exploitation, or patch information.

    0000044
    4.1K followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-48773 ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. Versions 2.0.18 through 3.0.8 have a pre-authentication heap memory corruption vulnerability in th… https://www.cve.org/CVERecord?id=CVE-2026-48773 ----- Traducción: CVE-2026-48773 Pro… http://infoflow.cloud`

    Post summary

    The tweet briefly announces CVE-2026-48773, highlighting a pre-authentication heap memory corruption flaw in ProxySQL, but lacks details on PoCs, exploitation, patches, or active usage.

    0000029
    82 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-48773 ProxySQL is a proxy for MySQL and its forks, as well as PostgreSQL. Versions 2.0.18 through 3.0.8 have a pre-authentication heap memory corruption vulnerability in th… https://www.cve.org/CVERecord?id=CVE-2026-48773

    Post summary

    The post announces CVE‑2026‑48773 as a pre-authentication heap memory corruption in ProxySQL versions 2.0.18 through 3.0.8, with no PoC, exploit code, or patch details provided.

    00000242
    57.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appproxysqlproxysql---

Explore more