pkg:Alpine/postgresql17
26 total CVEsHIGH15MEDIUM8LOW3
✅ Check your installed version
All known vulnerabilities
- from 0, < 17.10-r0
- from 0, < 17.10-r0
- HIGH8.8CVE-2026-6477PostgreSQL libpq lo_* functions let server superuser overwrite client stack memoryfrom 0, < 17.10-r0
- HIGH8.8CVE-2026-6475PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choicefrom 0, < 17.10-r0
- from 0, < 17.10-r0
- HIGH8.8CVE-2026-2006PostgreSQL missing validation of multibyte character length executes arbitrary codefrom 0, < 17.8-r0
- from 0, < 17.8-r0
- HIGH8.8CVE-2026-2004PostgreSQL intarray missing validation of type of input to selectivity estimator executes arbitrary codefrom 0, < 17.8-r0
- HIGH8.8CVE-2025-8715PostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target serverfrom 0, < 17.6-r0
- HIGH8.8CVE-2025-8714PostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql clientfrom 0, < 17.6-r0
- from 0, < 17.1-r0
- from 0, < 17.8-r0
- HIGH8.1CVE-2025-1094PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validationfrom 0, < 17.4-r0
- from 0, < 17.10-r0
- from 0, < 17.10-r0
- from 0, < 17.10-r0
- from 0, < 17.7-r0
- MEDIUM5.9CVE-2025-4207PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validationfrom 0, < 17.5-r0
- from 0, < 17.10-r0
- from 0, < 17.1-r0
- from 0, < 17.10-r0
- from 0, < 17.8-r0
- from 0, < 17.1-r0
- from 0, < 17.1-r0
- from 0, < 17.7-r0
- LOW3.1CVE-2025-8713PostgreSQL optimizer statistics can expose sampled data within a view, partition, or child tablefrom 0, < 17.6-r0