CVE-2026-85787 - An incomplete list of disallowed inputs in the SQL validation component in Amazon awslabs postgres-mcp-server to modify data beyond the read-only scope

Published 2026-09-09T21:30:11Z2906ccac07d3ef659550fd63962be19f1a73ad6b7b087afa1da2a91f1c72896b

Source metadata

Publication date
2026-09-09T21:30:11Z
Source identifier
f91926ec56d6d7fde8ce69e8c06abb63033cedd7
Public record ID
record:sha256:2906ccac07d3ef659550fd63962be19f1a73ad6b7b087afa1da2a91f1c72896b

This is source-provided metadata, not an enriched summary or an impact assessment. Follow the canonical source link for the published material.

Evidence and limitations

Source ID
aws_security_bulletins
Record identifier
2906ccac07d3ef659550fd63962be19f1a73ad6b7b087afa1da2a91f1c72896b
Record type
Source metadata

This record may overlap with other records. Source metadata can be incomplete or change. Validate consequential decisions against the linked source and your own environment.