vciy

CVEs we hold for Postgresql

Records whose assigning authority named Postgresql as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-6638PostgreSQL REFRESH PUBLICATION allows SQL injection via table namen/a PostgreSQL
CVE-2026-6637PostgreSQL refint allows stack buffer overflow and SQL injectionn/a PostgreSQL
CVE-2026-6575PostgreSQL pg_restore_attribute_stats accepts values that cause query planning to read past end of stats arrayn/a PostgreSQL
CVE-2026-6479PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursionn/a PostgreSQL
CVE-2026-6478PostgreSQL discloses MD5-hashed passwords via covert timing channeln/a PostgreSQL
CVE-2026-6477PostgreSQL libpq lo_* functions let server superuser overwrite client stack memoryn/a PostgreSQL
CVE-2026-6476PostgreSQL pg_createsubscriber allows SQL injection via subscription namen/a PostgreSQL
CVE-2026-6475PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choicen/a PostgreSQL
CVE-2026-6474PostgreSQL timeofday() can disclose portions of server memoryn/a PostgreSQL
CVE-2026-6473PostgreSQL server undersizes allocations, via integer wraparoundn/a PostgreSQL
CVE-2026-6472PostgreSQL CREATE TYPE does not check multirange schema CREATE privilegen/a PostgreSQL
CVE-2026-6471PostgreSQL logical decoding can dlopen arbitrary filen/a PostgreSQL
CVE-2026-6470PostgreSQL fails to check type USAGE privilegen/a PostgreSQL
CVE-2026-6469PostgreSQL ALTER TABLE ALTER TYPE resets extended statistics ownershipn/a PostgreSQL
CVE-2026-6464PostgreSQL psql COPY FROM STDIN early failure processes data lines as psql commandsn/a PostgreSQL
CVE-2026-2007PostgreSQL pg_trgm heap buffer overflow writes pattern onto server memoryn/a PostgreSQL
CVE-2026-2006PostgreSQL missing validation of multibyte character length executes arbitrary coden/a PostgreSQL
CVE-2026-2005PostgreSQL pgcrypto heap buffer overflow executes arbitrary coden/a PostgreSQL
CVE-2026-2004PostgreSQL intarray missing validation of type of input to selectivity estimator executes arbitrary coden/a PostgreSQL
CVE-2026-2003PostgreSQL oidvector discloses a few bytes of memoryn/a PostgreSQL
CVE-2026-19385PostgreSQL pg_dump heap buffer overflow executes arbitrary coden/a PostgreSQL
CVE-2026-18408PostgreSQL psql \unrestrict lets superuser of pg_dump origin server execute arbitrary code in psql clientn/a PostgreSQL
CVE-2026-18024PostgreSQL ascii() function reads past end of buffern/a PostgreSQL
CVE-2026-16241PostgreSQL ECPG integer underflow can crash the clientn/a PostgreSQL
CVE-2026-16239PostgreSQL type confusion in cursor CLOSE + DECLARE executes arbitrary coden/a PostgreSQL
CVE-2026-16238PostgreSQL type confusion in pg_restore_attribute_stats() executes arbitrary coden/a PostgreSQL
CVE-2026-15742PostgreSQL fuzzystrmatch writes effectively-arbitrary addresses, via integer wraparoundn/a PostgreSQL
CVE-2026-15741PostgreSQL expression deparse allows SQL injection via EXTRACT argumentn/a PostgreSQL
CVE-2026-14681PostgreSQL improper enforcement of GSSAPI encryption when coupled with SSLn/a PostgreSQL
CVE-2026-14680PostgreSQL type confusion via "internal" argumentsn/a PostgreSQL
CVE-2026-14679PostgreSQL stack buffer overflow in argument match writes 0x0 and 0x1 to server memoryn/a PostgreSQL
CVE-2026-14678PostgreSQL pg_trgm picksplit reads past end of buffern/a PostgreSQL
CVE-2026-14677PostgreSQL 32-bit pltcl and plperl undersize allocations, via integer wraparoundn/a PostgreSQL
CVE-2026-14676PostgreSQL pg_stat_statements heap buffer overflow executes arbitrary coden/a PostgreSQL
CVE-2026-14673PostgreSQL amcheck does not clear untrusted search pathn/a PostgreSQL
CVE-2026-14672PostgreSQL observable response discrepancy with non-default scram_iterations provides user existence oraclen/a PostgreSQL
CVE-2026-14671PostgreSQL refint plan cache type confusion executes arbitrary coden/a PostgreSQL
CVE-2026-14670PostgreSQL plperl tied object heap buffer overflow executes arbitrary coden/a PostgreSQL
CVE-2026-14669PostgreSQL to_char heap buffer overflow executes arbitrary coden/a PostgreSQL
CVE-2026-14668PostgreSQL ctid type confusion in selectivity estimator discloses derivative of arbitrary readn/a PostgreSQL
CVE-2026-14666PostgreSQL row security caching disregards role modificationsn/a PostgreSQL
CVE-2026-14664PostgreSQL regexp heap buffer overflow executes arbitrary coden/a PostgreSQL
CVE-2026-14663PostgreSQL pgcrypto, for OpenSSL-disabled ciphers, silently encrypts to and decrypts from cleartextn/a PostgreSQL
CVE-2026-14662PostgreSQL tsvector and tsquery undersize allocations, via integer wraparoundn/a PostgreSQL
CVE-2025-8715PostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target servern/a PostgreSQL
CVE-2025-8714PostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql clientn/a PostgreSQL
CVE-2025-8713PostgreSQL optimizer statistics can expose sampled data within a view, partition, or child tablen/a PostgreSQL
CVE-2025-4207PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validationn/a PostgreSQL
CVE-2025-12818PostgreSQL libpq undersizes allocations, via integer wraparoundn/a PostgreSQL
CVE-2025-12817PostgreSQL CREATE STATISTICS does not check for schema CREATE privilegen/a PostgreSQL
CVE-2025-1094PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validationn/a PostgreSQL
CVE-2024-7348PostgreSQL relation replacement during pg_dump executes arbitrary SQLn/a PostgreSQL
CVE-2024-4317PostgreSQL pg_stats_ext and pg_stats_ext_exprs lack authorization checksn/a PostgreSQL
CVE-2024-10979PostgreSQL PL/Perl environment variable changes execute arbitrary coden/a PostgreSQL
CVE-2024-10978PostgreSQL SET ROLE, SET SESSION AUTHORIZATION reset to wrong user IDn/a PostgreSQL
CVE-2024-10977PostgreSQL libpq retains an error message from man-in-the-middlen/a PostgreSQL
CVE-2024-10976PostgreSQL row security below e.g. subqueries disregards user ID changesn/a PostgreSQL
CVE-2024-0985PostgreSQL non-owner REFRESH MATERIALIZED VIEW CONCURRENTLY executes arbitrary SQLn/a PostgreSQL
CVE-2023-2455no title heldn/a postgresql
CVE-2023-2454no title heldn/a postgresql
CVE-2022-41862no title heldn/a postgresql
CVE-2022-2625no title heldn/a postgresql
CVE-2022-1552no title heldn/a postgresql
CVE-2021-3677no title heldn/a postgresql
CVE-2021-3393no title heldn/a postgresql
CVE-2021-32029no title heldn/a postgresql
CVE-2021-32028no title heldn/a postgresql
CVE-2021-32027no title heldn/a postgresql
CVE-2021-23222no title heldn/a postgresql
CVE-2021-23214no title heldn/a postgresql
CVE-2021-20229no title heldn/a PostgreSQL
CVE-2020-25696no title heldn/a PostgreSQL
CVE-2020-25695no title heldn/a postgresql
CVE-2020-25694no title heldn/a postgresql
CVE-2020-14350no title heldn/a PostgreSQL
CVE-2020-14349no title heldn/a PostgreSQL
CVE-2020-10733no title heldn/a PostgreSQL
CVE-2019-3466no title heldn/a postgresql-common (Debian-specific Postgres management…
CVE-2019-10211no title heldpostgresql
CVE-2019-10210no title heldpostgresql
CVE-2019-10209no title heldpostgresql
CVE-2019-10208no title heldpostgresql
CVE-2019-10164no title heldPostgreSQL
CVE-2019-10130no title heldpostgresql
CVE-2019-10129no title heldpostgresql
CVE-2019-10128no title heldn/a postgresql
CVE-2019-10127no title heldn/a postgresql
CVE-2018-10925no title heldpostgresql
CVE-2018-10915no title heldpostgresql
CVE-2017-8806no title heldn/a PostgreSQL-related scripts that are specific to Debian…
CVE-2017-7548no title heldpostgresql
CVE-2017-7547no title heldpostgresql
CVE-2017-7546no title heldpostgresql
CVE-2015-3167no title heldPostgreSQL
CVE-2015-3166no title heldPostgreSQL
CVE-2015-0244no title heldPostgreSQL
CVE-2015-0243no title heldPostgreSQL
CVE-2015-0242no title heldPostgreSQL
CVE-2015-0241no title heldPostgreSQL
CVE-2014-8161no title heldPostgreSQL

100 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.