Known vulnerabilities in PostgreSQL 11.2

Software: PostgreSQL
Version: 11.2
Software CPE: cpe:2.3:a:postgresql_global_development_group:postgresql:*:*:*:*:*:*:*:*
Total vulnerabilities: 33
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting PostgreSQL version 11.2 PostgreSQL 11.2 is affected by 33 vulnerabilities: 1 high, 15 medium, 17 low Critical High Medium Low

Vulnerabilities (33)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82943 - Permissions, Privileges, and Access Controls
CVE-2023-5870
CWE-264 Low
No
No
11.22, 12.17, 13.13, 14.10, 15.5, 16.1 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 54 more
#VU82942 - Integer overflow
CVE-2023-5869
CWE-190 High
No
No
11.22, 12.17, 13.13, 14.10, 15.5, 16.1 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 70 more
#VU82941 - Exposure of sensitive information to an unauthorized actor
CVE-2023-5868
CWE-200 Low
No
No
11.22, 12.17, 13.13, 14.10, 15.5, 16.1 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 53 more
#VU79454 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2023-39417
CWE-89 Medium
No
No
11.21, 12.16, 13.12, 14.9, 15.4 11.08.2023 SB2023081132
SB2023081715
SB2023081716
and 60 more
#VU76042 - Security Features
CVE-2023-2455
CWE-254 Low
No
No
11.20, 12.15, 13.11, 14.8, 15.3 11.05.2023 SB2023051138
SB2023051301
SB2023051528
and 61 more
#VU76041 - Permissions, Privileges, and Access Controls
CVE-2023-2454
CWE-264 Medium
No
No
11.20, 12.15, 13.11, 14.8, 15.3 11.05.2023 SB2023051138
SB2023051301
SB2023051528
and 55 more
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
10.22, 11.17, 12.12, 13.8, 14.5 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU63126 - Permissions, Privileges, and Access Controls
CVE-2022-1552
CWE-264 Medium
No
No
10.21, 11.16, 12.11, 13.7, 14.3 12.05.2022 SB2022051213
SB2022051303
SB2022051304
and 48 more
#VU59043 - Missing release of memory after effective lifetime
CVE-2021-3677
CWE-401 Low
No
No
11.13, 12.8, 13.4 16.12.2021 SB2021121641
SB2021121642
SB2021121643
and 17 more
#VU58114 - Missing Encryption of Sensitive Data
CVE-2021-23222
CWE-311 Medium
No
No
9.6.24, 10.19, 11.14, 12.9, 13.5, 14.1 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 29 more
#VU58113 - Missing Encryption of Sensitive Data
CVE-2021-23214
CWE-311 Medium
No
No
9.6.24, 10.19, 11.14, 12.9, 13.5, 14.1 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 34 more
#VU53233 - Missing release of memory after effective lifetime
CVE-2021-32029
CWE-401 Medium
No
No
11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 18 more
#VU53232 - Missing release of memory after effective lifetime
CVE-2021-32028
CWE-401 Medium
No
No
9.6.22, 10.17, 11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 41 more
#VU53231 - Integer overflow
CVE-2021-32027
CWE-190 Medium
No
No
9.6.22, 10.17, 11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 43 more
#VU50655 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3393
CWE-200 Low
No
No
11.11, 12.6, 13.2 11.02.2021 SB2021021136
SB2021022002
SB2021022618
and 9 more
#VU48436 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-25695
CWE-89 Medium
No
No
9.5.24, 9.6.20, 10.15, 11.10, 12.5, 13.1 16.11.2020 SB2020111609
SB2020111711
SB2020111816
and 33 more
#VU48437 - Improper Access Control
CVE-2020-25694
CWE-284 Medium
No
No
9.5.24, 9.6.20, 10.15, 11.10, 12.5, 13.1 16.11.2020 SB2020111609
SB2020111711
SB2020111815
and 35 more
#VU48438 - Improper input validation
CVE-2020-25696
CWE-20 Medium
No
No
9.5.24, 9.6.20, 10.15, 11.10, 12.5, 13.1 16.11.2020 SB2020111609
SB2020111711
SB2020111817
and 32 more
#VU45749 - Untrusted Search Path
CVE-2020-14350
CWE-426 Medium
No
No
9.5.23, 9.6.19, 10.14, 11.9, 12.4 18.08.2020 SB2020081801
SB2020081802
SB2020081803
and 31 more
#VU45748 - Untrusted Search Path
CVE-2020-14349
CWE-426 Medium
No
No
10.14, 11.9, 12.4 18.08.2020 SB2020081801
SB2020081803
SB2020082205
and 23 more


Showing elements 1 - 20 out of 33