47 entries matching postgresql — updated 2026-09-18 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2026-85878 | Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate privileges over a netwo | CRITICAL | 9.9 | 45%ile | NVD | 2026-09-18 |
| CVE-2026-54354 | MapServer is a system for developing web-based GIS applications. Prior to 8.6.4, MapServer's PostGIS runtime filter tran | HIGH | 8.2 | 35%ile | NVD | 2026-09-17 |
| CVE-2026-53557 | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated use | HIGH | 7.7 | 19%ile | NVD | 2026-09-17 |
| CVE-2026-63460 | Vendure is an open-source headless commerce platform. Prior to 3.6.5, the public Shop GraphQL API allows an unauthentica | HIGH | 7.5 | 35%ile | NVD | 2026-09-17 |
| CVE-2026-53556 | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/dat | MEDIUM | 6.0 | 32%ile | NVD | 2026-09-17 |
| CVE-2026-75513 | Marten is a .NET Transactional Document DB and Event Store on PostgreSQL. From version 7.0.0 until 9.13.0, several Marte | CRITICAL | 9.1 | 29%ile | NVD | 2026-09-16 |
| CVE-2026-84993 | MikroORM is a TypeScript ORM for Node.js based on Data Mapper, Unit of Work and Identity Map patterns. Prior to 6.6.16 a | MEDIUM | 6.5 | 41%ile | NVD | 2026-09-16 |
| CVE-2026-55650 | Outerbase Studio is a lightweight browser-based database GUI supporting PostgreSQL, MySQL, and SQLite. In version 0.10.2 | MEDIUM | 4.4 | 3%ile | NVD | 2026-09-15 |
| CVE-2026-12944 | IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root privileges (UID=0) | CRITICAL | 9.6 | 16%ile | NVD | 2026-09-14 |
| CVE-2026-82028 | Magistrala before 1.0.0 contains a SQL injection vulnerability in the timescale-reader and postgres-reader HTTP API serv | HIGH | 8.7 | 36%ile | NVD | 2026-09-14 |
| CVE-2026-90775 | PostGIS address_standardizer through 3.7.0 fails to validate the Weight parameter from caller-supplied rules tables befo | HIGH | 7.1 | 28%ile | NVD | 2026-09-13 |
| CVE-2026-14662 | PostgreSQL tsvector and tsquery undersize allocations, via integer wraparound | HIGH | 8.8 | 39%ile | Microsoft | 2026-08-11 |
| CVE-2026-14664 | PostgreSQL regexp heap buffer overflow executes arbitrary code | HIGH | 8.8 | 37%ile | Microsoft | 2026-08-11 |
| CVE-2026-14670 | PostgreSQL plperl tied object heap buffer overflow executes arbitrary code | HIGH | 8.8 | 37%ile | Microsoft | 2026-08-11 |
| CVE-2026-14671 | PostgreSQL refint plan cache type confusion executes arbitrary code | HIGH | 8.8 | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-14677 | PostgreSQL 32-bit pltcl and plperl undersize allocations, via integer wraparound | HIGH | 8.8 | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-14680 | PostgreSQL type confusion via "internal" arguments | HIGH | 8.8 | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-15741 | PostgreSQL expression deparse allows SQL injection via EXTRACT argument | HIGH | 8.8 | 29%ile | Microsoft | 2026-08-11 |
| CVE-2026-15742 | PostgreSQL fuzzystrmatch writes effectively-arbitrary addresses, via integer wraparound | HIGH | 8.8 | 37%ile | Microsoft | 2026-08-11 |
| CVE-2026-16238 | PostgreSQL type confusion in pg_restore_attribute_stats() executes arbitrary code | HIGH | 8.8 | 35%ile | Microsoft | 2026-08-11 |
| CVE-2026-16239 | PostgreSQL type confusion in cursor CLOSE + DECLARE executes arbitrary code | HIGH | 8.8 | 44%ile | Microsoft | 2026-08-11 |
| CVE-2026-18408 | PostgreSQL psql \unrestrict lets superuser of pg_dump origin server execute arbitrary code in psql client | HIGH | 8.8 | 30%ile | Microsoft | 2026-08-11 |
| CVE-2026-19385 | PostgreSQL pg_dump heap buffer overflow executes arbitrary code | HIGH | 8.8 | 36%ile | Microsoft | 2026-08-11 |
| CVE-2026-14668 | PostgreSQL ctid type confusion in selectivity estimator discloses derivative of arbitrary read | HIGH | 8.1 | 27%ile | Microsoft | 2026-08-11 |
| CVE-2026-6464 | PostgreSQL psql COPY FROM STDIN early failure processes data lines as psql commands | HIGH | 8.1 | 30%ile | Microsoft | 2026-08-11 |
| CVE-2026-6471 | PostgreSQL logical decoding can dlopen arbitrary file | HIGH | 7.2 | 21%ile | Microsoft | 2026-08-11 |
| CVE-2026-14663 | PostgreSQL pgcrypto, for OpenSSL-disabled ciphers, silently encrypts to and decrypts from cleartext | MEDIUM | 6.5 | 1%ile | Microsoft | 2026-08-11 |
| CVE-2026-53572 | KEDA: PostgreSQL connection string parameter injection via incomplete whitespace escaping | MEDIUM | 5.9 | 25%ile | Microsoft | 2026-08-11 |
| CVE-2026-14672 | PostgreSQL observable response discrepancy with non-default scram_iterations provides user existence oracle | MEDIUM | 5.3 | 17%ile | Microsoft | 2026-08-11 |
| CVE-2026-14678 | PostgreSQL pg_trgm picksplit reads past end of buffer | MEDIUM | 4.3 | 10%ile | Microsoft | 2026-08-11 |
| CVE-2026-18024 | PostgreSQL ascii() function reads past end of buffer | MEDIUM | 4.3 | 10%ile | Microsoft | 2026-08-11 |
| CVE-2026-6470 | PostgreSQL fails to check type USAGE privilege | MEDIUM | 4.3 | 10%ile | Microsoft | 2026-08-11 |
| CVE-2026-14666 | PostgreSQL row security caching disregards role modifications | MEDIUM | 4.2 | 7%ile | Microsoft | 2026-08-11 |
| CVE-2026-14673 | PostgreSQL amcheck does not clear untrusted search path | LOW | 3.8 | 7%ile | Microsoft | 2026-08-11 |
| CVE-2026-6469 | PostgreSQL ALTER TABLE ALTER TYPE resets extended statistics ownership | LOW | 3.8 | 9%ile | Microsoft | 2026-08-11 |
| CVE-2026-6473 | PostgreSQL server undersizes allocations, via integer wraparound | HIGH | 8.8 | 62%ile | Microsoft | 2026-05-12 |
| CVE-2026-6475 | PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice | HIGH | 8.8 | 26%ile | Microsoft | 2026-05-12 |
| CVE-2026-6477 | PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory | HIGH | 8.8 | 39%ile | Microsoft | 2026-05-12 |
| CVE-2026-6637 | PostgreSQL refint allows stack buffer overflow and SQL injection | HIGH | 8.8 | 31%ile | Microsoft | 2026-05-12 |
| CVE-2026-6479 | PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion | HIGH | 7.5 | 40%ile | Microsoft | 2026-05-12 |
| CVE-2026-6478 | PostgreSQL discloses MD5-hashed passwords via covert timing channel | MEDIUM | 6.5 | 45%ile | Microsoft | 2026-05-12 |
| CVE-2026-6472 | PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege | MEDIUM | 5.4 | 6%ile | Microsoft | 2026-05-12 |
| CVE-2026-6474 | PostgreSQL timeofday() can disclose portions of server memory | MEDIUM | 4.3 | 12%ile | Microsoft | 2026-05-12 |
| CVE-2026-6638 | PostgreSQL REFRESH PUBLICATION allows SQL injection via table name | LOW | 3.7 | 8%ile | Microsoft | 2026-05-12 |
| CVE-2025-8714 | PostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql client | HIGH | 8.8 | 53%ile | Microsoft | 2025-08-12 |
| CVE-2025-8715 | PostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target server | HIGH | 8.8 | 35%ile | Microsoft | 2025-08-12 |
| CVE-2025-8713 | PostgreSQL optimizer statistics can expose sampled data within a view, partition, or child table | LOW | 3.1 | 13%ile | Microsoft | 2025-08-12 |