Vulnerabilities > Postgresql > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-11-14 | CVE-2024-10977 | Insufficient Verification of Data Authenticity vulnerability in Postgresql Client use of server error message in PostgreSQL allows a server not trusted under current SSL or GSS settings to furnish arbitrary non-NUL bytes to the libpq application. | 3.7 |
2023-03-03 | CVE-2022-41862 | In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. | 3.7 |
2019-10-29 | CVE-2019-10209 | Out-of-bounds Read vulnerability in Postgresql Postgresql, versions 11.x before 11.5, is vulnerable to a memory disclosure in cross-type comparison for hashed subplan. | 2.2 |