Known vulnerabilities in PostgreSQL - page 4

Software: PostgreSQL
Software CPE: cpe:2.3:a:postgresql_global_development_group:postgresql:*:*:*:*:*:*:*:*
Total vulnerabilities: 198
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting PostgreSQL PostgreSQL is affected by 198 known vulnerabilities: 2 critical, 22 high, 90 medium, 84 low Critical High Medium Low

Vulnerabilities (198)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU111793 - Improper input validation
CVE-2004-0977
CWE-20 Low
No
No
7.4.6 02.02.2024 SB2024020259
SB2004101801
#VU82943 - Permissions, Privileges, and Access Controls
CVE-2023-5870
CWE-264 Low
No
No
11.22, 12.17, 13.13, 14.10, 15.5, 16.1 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 54 more
#VU82942 - Integer overflow
CVE-2023-5869
CWE-190 High
No
No
11.22, 12.17, 13.13, 14.10, 15.5, 16.1 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 70 more
#VU82941 - Exposure of sensitive information to an unauthorized actor
CVE-2023-5868
CWE-200 Low
No
No
11.22, 12.17, 13.13, 14.10, 15.5, 16.1 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 53 more
#VU111785 - Improper input validation
CVE-2006-5541
CWE-20 Low
No
No
8.0.9, 8.1.5 12.10.2023 SB2023101297
#VU79455 - Permissions, Privileges, and Access Controls
CVE-2023-39418
CWE-264 Low
No
No
15.4 11.08.2023 SB2023081132
SB2023081716
SB2023081720
and 22 more
#VU79454 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2023-39417
CWE-89 Medium
No
No
11.21, 12.16, 13.12, 14.9, 15.4 11.08.2023 SB2023081132
SB2023081715
SB2023081716
and 60 more
#VU76042 - Security Features
CVE-2023-2455
CWE-254 Low
No
No
11.20, 12.15, 13.11, 14.8, 15.3 11.05.2023 SB2023051138
SB2023051301
SB2023051528
and 61 more
#VU76041 - Permissions, Privileges, and Access Controls
CVE-2023-2454
CWE-264 Medium
No
No
11.20, 12.15, 13.11, 14.8, 15.3 11.05.2023 SB2023051138
SB2023051301
SB2023051528
and 55 more
#VU111772 - Improper input validation
CVE-2010-0442
CWE-20 Medium
Available
No
8.0.24 24.02.2023 SB2023022439
SB2011102510
#VU72088 - Out-of-bounds read
CVE-2022-41862
CWE-125 Medium
No
No
12.14, 13.10, 14.7, 15.2 09.02.2023 SB2023020953
SB2023021334
SB2023021335
and 47 more
#VU111782 - Improper input validation
CVE-2007-0555
CWE-20 High
No
No
7.3.13, 7.4.16, 8.0.11, 8.1.7, 8.2.2 19.01.2023 SB2023011948
SB2007031602
#VU111807 - Improper input validation
CVE-1999-0862
CWE-20 Low
No
No
- 17.08.2022 SB2022081763
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
10.22, 11.17, 12.12, 13.8, 14.5 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU63126 - Permissions, Privileges, and Access Controls
CVE-2022-1552
CWE-264 Medium
No
No
10.21, 11.16, 12.11, 13.7, 14.3 12.05.2022 SB2022051213
SB2022051303
SB2022051304
and 48 more
#VU59043 - Missing release of memory after effective lifetime
CVE-2021-3677
CWE-401 Low
No
No
11.13, 12.8, 13.4 16.12.2021 SB2021121641
SB2021121642
SB2021121643
and 17 more
#VU58114 - Missing Encryption of Sensitive Data
CVE-2021-23222
CWE-311 Medium
No
No
9.6.24, 10.19, 11.14, 12.9, 13.5, 14.1 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 29 more
#VU58113 - Missing Encryption of Sensitive Data
CVE-2021-23214
CWE-311 Medium
No
No
9.6.24, 10.19, 11.14, 12.9, 13.5, 14.1 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 34 more
#VU53232 - Missing release of memory after effective lifetime
CVE-2021-32028
CWE-401 Medium
No
No
9.6.22, 10.17, 11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 41 more
#VU53231 - Integer overflow
CVE-2021-32027
CWE-190 Medium
No
No
9.6.22, 10.17, 11.12, 12.7, 13.3 13.05.2021 SB2021051316
SB2021051605
SB2021052507
and 43 more


Showing elements 61 - 80 out of 198