Known vulnerabilities in PostgreSQL - page 3

Software: PostgreSQL
Software CPE: cpe:2.3:a:postgresql_global_development_group:postgresql:*:*:*:*:*:*:*:*
Total vulnerabilities: 170
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting PostgreSQL PostgreSQL is affected by 170 known vulnerabilities: 2 critical, 18 high, 75 medium, 75 low Critical High Medium Low

Vulnerabilities (170)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU76042 - Security Features
CVE-2023-2455
CWE-254 Low
No
No
11.20, 12.15, 13.11, 14.8, 15.3 11.05.2023 SB2023051138
SB2023051301
SB2023051528
and 61 more
#VU111772 - Improper input validation
CVE-2010-0442
CWE-20 Medium
Available
No
8.0.24 24.02.2023 SB2023022439
SB2011102510
#VU72088 - Out-of-bounds read
CVE-2022-41862
CWE-125 Medium
No
No
12.14, 13.10, 14.7, 15.2 09.02.2023 SB2023020953
SB2023021334
SB2023021335
and 47 more
#VU111782 - Improper input validation
CVE-2007-0555
CWE-20 High
No
No
7.3.13, 7.4.16, 8.0.11, 8.1.7, 8.2.2 19.01.2023 SB2023011948
SB2007031602
#VU111807 - Improper input validation
CVE-1999-0862
CWE-20 Low
No
No
- 17.08.2022 SB2022081763
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
10.22, 11.17, 12.12, 13.8, 14.5 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU63126 - Permissions, Privileges, and Access Controls
CVE-2022-1552
CWE-264 Medium
No
No
10.21, 11.16, 12.11, 13.7, 14.3 12.05.2022 SB2022051213
SB2022051303
SB2022051304
and 48 more
#VU59043 - Missing release of memory after effective lifetime
CVE-2021-3677
CWE-401 Low
No
No
11.13, 12.8, 13.4 16.12.2021 SB2021121641
SB2021121642
SB2021121643
and 17 more
#VU58114 - Missing Encryption of Sensitive Data
CVE-2021-23222
CWE-311 Medium
No
No
9.6.24, 10.19, 11.14, 12.9, 13.5, 14.1 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 29 more
#VU58113 - Missing Encryption of Sensitive Data
CVE-2021-23214
CWE-311 Medium
No
No
9.6.24, 10.19, 11.14, 12.9, 13.5, 14.1 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 34 more
#VU53233 - Missing release of memory after effective lifetime
CVE-2021-32029
CWE-401 Medium
No
No
11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 18 more
#VU53232 - Missing release of memory after effective lifetime
CVE-2021-32028
CWE-401 Medium
No
No
9.6.22, 10.17, 11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 41 more
#VU53231 - Integer overflow
CVE-2021-32027
CWE-190 Medium
No
No
9.6.22, 10.17, 11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 43 more
#VU50656 - Permissions, Privileges, and Access Controls
CVE-2021-20229
CWE-264 Low
No
No
13.2 11.02.2021 SB2021021136
SB2021022002
SB2021022620
and 3 more
#VU50655 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3393
CWE-200 Low
No
No
11.11, 12.6, 13.2 11.02.2021 SB2021021136
SB2021022002
SB2021022618
and 9 more
#VU48436 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-25695
CWE-89 Medium
No
No
9.5.24, 9.6.20, 10.15, 11.10, 12.5, 13.1 16.11.2020 SB2020111609
SB2020111711
SB2020111816
and 33 more
#VU48437 - Improper Access Control
CVE-2020-25694
CWE-284 Medium
No
No
9.5.24, 9.6.20, 10.15, 11.10, 12.5, 13.1 16.11.2020 SB2020111609
SB2020111711
SB2020111815
and 35 more
#VU48438 - Improper input validation
CVE-2020-25696
CWE-20 Medium
No
No
9.5.24, 9.6.20, 10.15, 11.10, 12.5, 13.1 16.11.2020 SB2020111609
SB2020111711
SB2020111817
and 32 more
#VU45749 - Untrusted Search Path
CVE-2020-14350
CWE-426 Medium
No
No
9.5.23, 9.6.19, 10.14, 11.9, 12.4 18.08.2020 SB2020081801
SB2020081802
SB2020081803
and 31 more
#VU45748 - Untrusted Search Path
CVE-2020-14349
CWE-426 Medium
No
No
10.14, 11.9, 12.4 18.08.2020 SB2020081801
SB2020081803
SB2020082205
and 23 more


Showing elements 41 - 60 out of 170