Feed/CVE-2026-16503
CVE-2026-16503CRITICALCVSS 9.1

CVE-2026-16503

Published Jul 31, 2026·Updated Aug 3, 2026

NVD Description

Deployment of the VPS.org one-click Supabase template deploys a PostgreSQL instance that is published on all interfaces (0.0.0.0:5432) with a default database password set to "postgres". Because Docker installs its own iptables rules, this exposure bypasses a standard host UFW configuration.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free