<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Amazon Aurora PostgreSQL (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/amazon-aurora-postgresql.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/amazon-aurora-postgresql-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Amazon Aurora PostgreSQL (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:04 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2025-12967 – An issue in AWS Wrappers for Amazon Aurora PostgreSQL may allow for privilege es...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-12967</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-12967</guid>
    <pubDate>Mon, 10 Nov 2025 18:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-12967</strong></p>
  <p>An issue in AWS Wrappers for Amazon Aurora PostgreSQL may allow for privilege escalation to rds_superuser role. A low privilege authenticated user can create a crafted function that could be executed with permissions of other Amazon Relational Database Service (RDS) users.  We recommend customers upgrade to the following versions: AWS JDBC Wrapper to v2.6.5, AWS Go Wrapper to 2025-10-17, AWS Node…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-470</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-12967">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
