logo

Critical 9.2 CVSS RCE Found in Amazon Redshift JDBC Driver

ID: 894a3295-2666-54ff-8e1e-c89ce0d0e0cc

STIX ID: report--894a3295-2666-54ff-8e1e-c89ce0d0e0cc

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-05-15

Date Updated: 2026-05-15

Author: Ddos

...
...

A critical Remote Code Execution vulnerability (CVE-2026-8178, CVSSv4 9.2) in Amazon Redshift JDBC Driver versions before 2.2.2 allows attackers who can influence JDBC connection strings to trigger unsafe class loading and execute arbitrary code in the application's JVM, potentially leading to full system compromise; AWS has patched the issue in version 2.2.2 and advises updating any forked or derivative code.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.