Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-97469— PostgreSQL Anonymizer: RESTRICTED functions are reachable through a subLink

Quick assessment

Affected
DALIBO PostgreSQL Anonymizer
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

PostgreSQL Anonymizer 存在一个漏洞,允许未获得特权的脱敏用户反复调用 anon.hash() 函数,收集(种子,哈希输出)对,从而执行离线暴力破解攻击并推断出盐值。当调用被放置在子查询内部时,脱敏角色可以执行受限函数。该问题已在 PostgreSQL Anonymizer 3.2.3 及更高版本中得到修复。

CVSS 4.3 · Medium EPSS 0.12% · P2

Affected Version Matrix 1

VendorProduct Version RangeStatus
DALIBO PostgreSQL Anonymizer 1< 3.2.3 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-97469

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
PostgreSQL Anonymizer: RESTRICTED functions are reachable through a subLink
Source: CVE Program / CVE List V5
Vulnerability Description
PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to repeatedly call the anon.hash() function and collects (seed, hash_output) pairs to perform an offline brute-force attack and deduce the salt. A masked role can run a RESTRICTED function when the call is placed inside the sub-select. The problem is resolved in PostgreSQL Anonymizer 3.2.3 and later versions
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
可逆的单向哈希
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
DALIBO PostgreSQL Anonymizer 1 ~ 3.2.3 -

II. Public POCs for CVE-2026-97469

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-97469

请登录查看更多情报信息。

News Coverage for CVE-2026-97469 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-97469

No comments yet


Leave a comment