
PgBouncer v1.26.0 fixes an issue I reported, now tracked as CVE-2026-6668, an integer overflow that can lead to a server DoS. Update your instances, especially if you’re running multi-tenant deployments. CVE: https://www.cve.org/CVERecord?id=CVE-2026-6668 Fix: https://github.com/pgbouncer/pgbouncer/commit/f2ff5538b0abc262e84dab4e946999dfbd3b0e18
