# CVE-2026-87911

## Summary

- **CVE ID:** CVE-2026-87911
- **Severity:** CRITICAL
- **CVSS Score:** 9.6 (CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H)
- **CWE:** CWE-78, CWE-184
- **Published:** Sep 9, 2026
- **Last Modified:** Sep 10, 2026

## Description

An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-server before 1.1.7 might allow an unauthenticated actor to execute operating system commands on the host of a self-managed PostgreSQL server by placing a crafted COPY ... TO PROGRAM statement into content that is processed when an authenticated user interacts with the MCP server in its default read-only mode.



To remediate this issue, users should upgrade to version 1.1.7 or later.

## Affected Products

- AWS — AWS Labs postgres MCP Server (0)

## References

- [CNA](https://pypi.org/project/awslabs.postgres-mcp-server/1.1.7/)
- [CNA](https://aws.amazon.com/security/security-bulletins/2026-104-aws/)
- [CNA](https://github.com/awslabs/mcp/security/advisories/GHSA-fph8-pg5w-78fv)

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._