Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2976▼ 107 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

248 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.4)0.77%—Postgresql14/11/202417/6/2026
Incomplete tracking in PostgreSQL of tables with row security allows a reused query to view or change different rows from those intended. CVE-2023-2455 and CVE-2016-2193 fixed most interaction between row security and user ID changes. They missed cases where a subquery, WITH query, security invoker view, or…
AnalizadaAlta (7.2)1.2%—Microsoft Azure Database FOR Postgresql Flexible Server12/11/202417/6/2026
Azure Database for PostgreSQL Flexible Server Extension Elevation of Privilege Vulnerability
AnalizadaAlta (7.2)1.2%—Microsoft Azure Database FOR Postgresql Flexible Server12/11/202417/6/2026
Azure Database for PostgreSQL Flexible Server Extension Elevation of Privilege Vulnerability
ModificadaAlta (7.5)1.6%—Postgresql8/8/202417/6/2026
Time-of-check Time-of-use (TOCTOU) race condition in pg_dump in PostgreSQL allows an object creator to execute arbitrary SQL functions as the user running pg_dump, which is often a superuser. The attack involves replacing another relation type with a view or foreign table. The attack requires waiting for pg_dump to…
ModificadaMedia (4.3)0.72%—Postgresql14/5/202417/6/2026
Missing authorization in PostgreSQL built-in views pg_stats_ext and pg_stats_ext_exprs allows an unprivileged database user to read most common values and other statistics from CREATE STATISTICS commands of other users. The most common values may reveal column values the eavesdropper could not otherwise read or…
AplazadaCrítica (9.8)0.73%—Yvan Dotet Postgresql Query DeluxeAI6/5/202417/6/2026
A SQL injection vulnerability in Yvan Dotet PostgreSQL Query Deluxe module (aka query_deluxe) 17.x before 17.0.0.4 allows a remote attacker to gain privileges via the query parameter to models/querydeluxe.py:QueryDeluxe::get_result_from_query.
ModificadaCrítica (9.8)4.8%—Postgresql Jdbc DriverFedoraproject Fedora19/2/202417/6/2026
pgjdbc, the PostgreSQL JDBC Driver, allows attacker to inject SQL if using PreferQueryMode=SIMPLE. Note this is not the default. In the default mode there is no vulnerability. A placeholder for a numeric value must be immediately preceded by a minus. There must be a second placeholder for a string value after the…
ModificadaAlta (8)1.8%—Postgresql8/2/202417/6/2026
Late privilege drop in REFRESH MATERIALIZED VIEW CONCURRENTLY in PostgreSQL allows an object creator to execute arbitrary SQL functions as the command issuer. The command intends to run SQL functions as the owner of the materialized view, enabling safe refresh of untrusted materialized views. The victim is a superuser…
ModificadaMedia (4.4)2.6%—PostgresqlRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder EUS FOR Power Little Endian EUSRedhat Codeready Linux Builder FOR Arm64 EUS+1210/12/202317/6/2026
A flaw was found in PostgreSQL involving the pg_cancel_backend role that signals background workers, including the logical replication launcher, autovacuum workers, and the autovacuum launcher. Successful exploitation requires a non-core extension with a less-resilient background worker and would affect that specific…
ModificadaAlta (8.8)4.3%—PostgresqlRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder EUS FOR Power Little Endian EUSRedhat Codeready Linux Builder FOR Arm64 EUS+1710/12/202317/6/2026
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data.…
ModificadaMedia (4.3)2.8%—PostgresqlRedhat Codeready Linux Builder EUSRedhat Codeready Linux Builder EUS FOR Power Little Endian EUSRedhat Codeready Linux Builder FOR Arm64 EUS+1210/12/202323/6/2026
A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensitive information by exploiting certain aggregate function calls with 'unknown'-type arguments. Handling 'unknown'-type values from string literals without type designation can disclose bytes, potentially revealing notable…
ModificadaMedia (4.4)0.37%—Postgresql22/8/202317/6/2026
An issue was discovered in PostgreSQL 12.2 allows attackers to cause a denial of service via repeatedly sending SIGHUP signals. NOTE: this is disputed by the vendor because untrusted users cannot send SIGHUP signals; they can only be sent by a PostgreSQL superuser, a user with pg_reload_conf access, or a user with…
ModificadaMedia (4.3)1.1%—PostgresqlRedhat Enterprise LinuxDebian Linux11/8/202317/6/2026
A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. If UPDATE and SELECT policies forbid some rows that INSERT policies do not forbid, a user could store such rows.
ModificadaAlta (8.8)1.7%—PostgresqlRedhat Software CollectionsRedhat Enterprise LinuxDebian Linux11/8/202330/9/2026
IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @extschema:...@ inside a quoting construct (dollar quoting, '', or ""). If an administrator has installed files of a vulnerable, trusted, non-bundled extension, an attacker with database-level CREATE…
ModificadaMedia (5.4)0.69%—PostgresqlRedhat Software CollectionsRedhat Enterprise LinuxFedoraproject Fedora9/6/202317/6/2026
Row security policies disregard user ID changes after inlining; PostgreSQL could permit incorrect policies to be applied in certain cases where role-specific policies are used and a given query is planned under one role and then executed under other roles. This scenario can happen under security definer functions or…
ModificadaAlta (7.2)1.2%—PostgresqlRedhat Software CollectionsRedhat Enterprise LinuxFedoraproject Fedora9/6/202317/6/2026
schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an authed attacker with elevated database-level privileges to execute arbitrary code.
ModificadaBaja (3.7)0.62%—PostgresqlFedoraproject FedoraRedhat Integration Camel KRedhat Integration Camel Quarkus+23/3/202317/6/2026
In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client to over-read and report an error message containing uninitialized bytes.
ModificadaMedia (5.5)0.49%—Postgresql Jdbc DriverDebian Linux23/11/202217/6/2026
pgjdbc is an open source postgresql JDBC Driver. In affected versions a prepared statement using either `PreparedStatement.setText(int, InputStream)` or `PreparedStatemet.setBytea(int, InputStream)` will create a temporary file if the InputStream is larger than 2k. This will create a temporary file which is readable…
ModificadaAlta (8.8)16%—Postgresql31/8/202217/6/2026
A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is maintaining another user's objects. The Autovacuum, REINDEX, CREATE INDEX, REFRESH MATERIALIZED VIEW, CLUSTER, and pg_amcheck commands activated relevant protections too late or not at all during the…
ModificadaMedia (5.9)0.40%—Postgresql25/8/202217/6/2026
Odyssey passes to client unencrypted bytes from man-in-the-middle When Odyssey storage is configured to use the PostgreSQL server using 'trust' authentication with a 'clientcert' requirement or to use 'cert' authentication, a man-in-the-middle attacker can inject false responses to the client's first few queries.…
ModificadaAlta (8)1.9%—PostgresqlFedoraproject FedoraRedhat Enterprise Linux18/8/202217/6/2026
A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary objects in at least one schema, the ability to lure or wait for an administrator to create or update an affected extension in that schema, and the ability to lure or wait for a victim to use the object targeted in CREATE…
ModificadaCrítica (10)0.64%—Linuxfoundation Loopback-connector-postgresql12/8/202217/6/2026
Improper input validation on the `contains` LoopBack filter may allow for arbitrary SQL injection. When the extended filter property `contains` is permitted to be interpreted by the Postgres connector, it is possible to inject arbitrary SQL which may affect the confidentiality and integrity of data stored on the…
ModificadaAlta (8)2.2%—Postgresql Jdbc DriverDebian LinuxFedoraproject Fedora3/8/202217/6/2026
PostgreSQL JDBC Driver (PgJDBC for short) allows Java programs to connect to a PostgreSQL database using standard, database independent Java code. The PGJDBC implementation of the `java.sql.ResultRow.refreshRow()` method is not performing escaping of column names so a malicious column name that contains a statement…
ModificadaCrítica (9.8)3.0%—Postgresql Jdbc DriverDebian Linux10/3/202217/6/2026
In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties. An example situation is that an attacker could create an executable JSP file under a Tomcat web root. NOTE: the…
ModificadaAlta (8.1)1.9%—PostgresqlFedoraproject FedoraRedhat Software CollectionsRedhat Enterprise Linux+24/3/202217/6/2026
When the server is configured to use trust authentication with a clientcert requirement or to use cert authentication, a man-in-the-middle attacker can inject arbitrary SQL queries when a connection is first established, despite the use of SSL certificate verification and encryption.
Orbitaley — Vulnerabilidades