Known vulnerabilities in Postgresql JDBC Driver

Software CPE: cpe:2.3:a:postgresql_global_development_group:pgjdbc:*:*:*:*:*:*:*:*
Total vulnerabilities: 10
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Postgresql JDBC Driver Postgresql JDBC Driver is affected by 10 known vulnerabilities: 4 high, 5 medium, 1 low Critical High Medium Low

Vulnerabilities (10)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU135919 - Selection of Less-Secure Algorithm During Negotiat
CVE-2026-54291
CWE-757 Medium
No
No
42.7.12 30.06.2026 SB2026063034
SB2026073042
SB2026080425
#VU128414 - Allocation of Resources Without Limits or Throttling
CVE-2026-42198
CWE-770 Medium
No
No
42.7.11 28.04.2026 SB20260428236
SB2026052067
SB2026052092
and 21 more
#VU112166 - Improper Authentication
CVE-2025-49146
CWE-287 High
No
No
42.7.7 04.07.2025 SB2025070405
SB2025070406
SB2025070708
and 13 more
#VU86983 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-1597
CWE-89 High
No
No
42.2.28, 42.3.9, 42.4.4, 42.5.5, 42.6.1 04.03.2024 SB2024030405
SB2024030406
SB2024030427
and 47 more
#VU69545 - Incorrect Default Permissions
CVE-2022-41946
CWE-276 Low
No
No
42.2.27, 42.3.8, 42.4.3, 42.5.1 23.11.2022 SB2022112335
SB2023010922
SB2023011025
and 42 more
#VU66747 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-31197
CWE-89 High
No
No
42.2.26, 42.4.1 24.08.2022 SB2022082432
SB2022082543
SB2022090901
and 27 more
#VU62716 - Improper input validation
CVE-2022-26520
CWE-20 High
No
No
42.3.3 02.05.2022 SB2022050206
SB2022061311
SB2022062202
and 13 more
#VU62715 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2012-1618
CWE-89 Medium
No
No
8.2 02.05.2022 SB2012100705
SB2024090570
#VU62714 - Improper Initialization
CVE-2022-21724
CWE-665 Medium
No
No
42.2.25, 42.3.2 02.05.2022 SB2022050205
SB2022062202
SB2022062204
and 18 more
#VU41479 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2020-13692
CWE-611 Medium
No
No
42.2.13 10.08.2020 SB2020060439
SB2020081017
SB2020081018
and 13 more