Euler Taveira@eulertoPatch
PgBouncer 1.25.2 release notes include fixes for several CVEs, notably CVE-2026-6666, indicating that patches have been applied.
CVEarity@CVEarityDisclosure
The text announces the existence of CVE-2026-6667 with basic severity info but provides no technical details, exploits, or mitigation instructions.
NerdieNews@NewsNerdiePatch
CVE-2026-6667 permits unauthenticated users to terminate client connections in PgBouncer via the KILL_CLIENT command on versions before 1.25.2; a patch has been released to mitigate this issue.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post references CVE-2026-6667, noting an unauthorized KILL_CLIENT command execution in PgBouncer before version 1.25.2, but offers no PoC, exploit code, or mitigation details.