Skip to content
← All tracked CVEs

Updated 04:00

not yet fixed but still within SLA

82 open

CVEStatusSeveritySummaryReleaseClock startedDeadline
OpenHighPostgreSQL refint type confusion enables arbitrary code execution as DB OS user; affects <18.5/17.11/16.15/15.19/14.24secure-packages-25.11Aug 25, 2026Sep 9, 2026
OpenHighPostgreSQL stack buffer overflow via OUT parameter count in argument name matching; 0x0/0x1 writessecure-packages-25.11Aug 25, 2026Sep 9, 2026
OpenMediumPostgreSQL: Stale RLS from role/ownership changes enables unauthorized reads/writes via plan reusesecure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumPostgreSQL pgcrypto disabled-cipher bug allows cleartext recovery; wrong-key decrypt bypasses MDCsecure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumPostgreSQL ascii() buffer over-read leaks up to 3 bytes; affects versions before 18.5/17.11/16.15/15.19/14.24secure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumPostgreSQL pg_trgm picksplit buffer over-read leaks memory via split choices; pre-18.5/17.11/16.15/15.19/14.24secure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumAttacker-controlled CR in configparser multiline values injects unexpected configuration keys and valuessecure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumPrivilege check bypass in PostgreSQL DDL enables DoS via type dependencies (pre-18.5/17.11/16.15/15.19/14.24)secure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumPostgreSQL 16–18 SCRAM iteration-count leak allows unauthenticated user enumeration when non-default scram_iterationssecure-packages-rollingAug 24, 2026Oct 8, 2026
OpenMediumPostgreSQL ascii() buffer over-read leaks up to 3 bytes; affects versions before 18.5/17.11/16.15/15.19/14.24secure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL RLS cache invalidation bug allows unauthorized access after role/ownership changes via plan reusesecure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumconfigparser CR in multiline values allows injected keys/values via attacker-controlled inputsecure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL 16–18: SCRAM iteration-count discrepancy enables unauthenticated user enumerationsecure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL pgcrypto disabled OpenSSL ciphers leak plaintext; wrong-key decryption bypasses MDCsecure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL pg_trgm picksplit heap buffer over-read may leak memory via split choicessecure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL DDL lacks auth for range subtype/expressions, enabling DoS on type ALTER/DROPsecure-packages-26.05Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL stale RLS policies after role or ownership changes due to plan reusesecure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL ascii() buffer over-read leaks up to 3 bytes via crafted text; affects <18.5/17.11/16.15/15.19/14.24secure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL pgcrypto vuln: disabled ciphers allow cleartext recovery, wrong-key decryption bypasses MDCsecure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenMediumSCRAM auth iteration-count discrepancy enables user enumeration with non-default scram_iterations; affects PostgreSQL 16–18 pre 18.5/17.11/16.15secure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenMediumConfigParser write() allows key/value injection via CR in attacker-controlled multiline valuessecure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL pg_trgm picksplit buffer over-read enabling memory inference; affects pre-18.5/17.11/16.15/15.19/14.24secure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenMediumPostgreSQL DDL missing auth enables DoS on type ALTER/DROP via range/expression dependenciessecure-packages-25.11Aug 25, 2026Oct 9, 2026
OpenLowPostgreSQL ECPG integer underflow enables DoS via bytea without prefix; client memory overwritesecure-packages-rollingAug 24, 2026Nov 22, 2026
OpenLowPostgreSQL ALTER TABLE ALTER TYPE misassigns stats ownership, enabling unauthorized DROP/ALTER STATISTICSsecure-packages-rollingAug 24, 2026Nov 22, 2026
OpenLowPostgreSQL amcheck EXECUTE privilege allows arbitrary function execution as expression index ownerssecure-packages-rollingAug 24, 2026Nov 22, 2026
OpenLowPostgreSQL ALTER TABLE ALTER TYPE misassigns stats ownership, allowing unauthorized DROP/ALTERsecure-packages-26.05Aug 25, 2026Nov 23, 2026
OpenLowPostgreSQL amcheck untrusted search_path permits arbitrary function execution via expression indexes in versions before 18.5/16.15/15.19/14.24secure-packages-26.05Aug 25, 2026Nov 23, 2026
OpenLowPostgreSQL ECPG integer underflow: client DoS via missing bytea prefix; pre-18.5/17.11/16.15/15.19/14.24secure-packages-26.05Aug 25, 2026Nov 23, 2026
OpenLowPostgreSQL amcheck untrusted search_path enables privilege escalation via expression indexes; affects <18.5/16.15/15.19/14.24secure-packages-25.11Aug 25, 2026Nov 23, 2026
OpenLowPostgreSQL ALTER TABLE ALTER TYPE reassigns stats ownership, enabling unauthorized DROP/ALTER; pre-18.5/17.11/16.15/15.19/14.24secure-packages-25.11Aug 25, 2026Nov 23, 2026
OpenLowServer-admin triggered PostgreSQL ECPG integer underflow DoS via malformed bytea; pre-18.5/17.11/16.15/15.19/14.24secure-packages-25.11Aug 25, 2026Nov 23, 2026