HIGH8.8CVE-2026-6637PostgreSQL refint allows stack buffer overflow and SQL injection from 0, < 13.23-0+deb11u4
HIGH8.8CVE-2026-6475PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice from 0, < 13.23-0+deb11u4
HIGH8.8CVE-2025-8715PostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target server from 0, < 13.22-0+deb11u1
HIGH8.8PostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql client
from 0, < 13.22-0+deb11u1
HIGH8.8PostgreSQL PL/Perl environment variable changes execute arbitrary code
from 0, < 13.17-0+deb11u1
HIGH8.8Postgresql: buffer overrun from integer overflow in array modification
from 0, < 13.13-0+deb11u1
HIGH8.8Postgresql: extension script @substitutions@ within quoting allow sql injection
from 0, < 13.13-0+deb11u1
HIGH8.1PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validation
from 0, < 13.20-0+deb11u1
HIGH8.1PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validation
from 0, < 13.19-0+deb11u1
HIGH8.1PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validation
from 0, < 13.20-0+deb11u1
HIGH8.0PostgreSQL non-owner REFRESH MATERIALIZED VIEW CONCURRENTLY executes arbitrary SQL
from 0, < 13.14-0+deb11u1
HIGH8.0PostgreSQL non-owner REFRESH MATERIALIZED VIEW CONCURRENTLY executes arbitrary SQL
from 0, < 13.14-0+deb11u1
HIGH7.5PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion
from 0, < 13.23-0+deb11u4
HIGH7.5PostgreSQL relation replacement during pg_dump executes arbitrary SQL
from 0, < 13.16-0+deb11u1
HIGH7.5PostgreSQL relation replacement during pg_dump executes arbitrary SQL
from 0, < 13.16-0+deb11u1
MEDIUM5.9PostgreSQL libpq undersizes allocations, via integer wraparound
from 0, < 13.23-0+deb11u1
MEDIUM5.9PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation
from 0, < 13.21-0+deb11u1
MEDIUM5.9PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation
from 0, < 13.21-0+deb11u1
MEDIUM5.4PostgreSQL row security below e.g. subqueries disregards user ID changes
from 0, < 13.17-0+deb11u1
MEDIUM5.4PostgreSQL row security below e.g. subqueries disregards user ID changes
from 0, < 13.17-0+deb11u1
MEDIUM4.4Postgresql: role pg_signal_backend can signal certain superuser processes.
from 0, < 13.13-0+deb11u1
MEDIUM4.3PostgreSQL timeofday() can disclose portions of server memory
from 0, < 13.23-0+deb11u4
MEDIUM4.3PostgreSQL oidvector discloses a few bytes of memory
from 0, < 13.23-0+deb11u2
MEDIUM4.3Postgresql: memory disclosure in aggregate function calls
from 0, < 13.13-0+deb11u1
MEDIUM4.2PostgreSQL SET ROLE, SET SESSION AUTHORIZATION reset to wrong user ID
from 0, < 13.17-0+deb11u1
LOW3.7PostgreSQL libpq retains an error message from man-in-the-middle
from 0, < 13.17-0+deb11u1
LOW3.1PostgreSQL CREATE STATISTICS does not check for schema CREATE privilege
from 0, < 13.23-0+deb11u1
LOW3.1PostgreSQL CREATE STATISTICS does not check for schema CREATE privilege
from 0, < 13.23-0+deb11u1
LOW3.1PostgreSQL optimizer statistics can expose sampled data within a view, partition, or child table
from 0, < 13.22-0+deb11u1
LOW3.1PostgreSQL optimizer statistics can expose sampled data within a view, partition, or child table
from 0, < 13.22-0+deb11u1