A critical vulnerability in pgAdmin 4 (CVE-2025-2945) allows remote code execution (RCE) on systems running versions prior to 9.2 due to unsafe implementations of two POST endpoints. This risk, rated 9.9, permits attackers to execute arbitrary code and compromise sensitive data. Organizations are urged to update immediately to version 9.2 and monitor for breaches.

SpyCloud Research Shows that Endpoint Detection and Antivirus Solutions Miss Two-Thirds (66%) of Malware Infections
SpyCloud, an identity threat protection company, has found that 66% of malware infections bypass endpoint protection solutions, regardless of their advanced artificial intelligence and telemetry