PostgreSQL
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 261 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 2, 1999 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →A week after Dutch FIOD seized 800+ servers, the hosting network's ASN (AS209847) is still scanning at its normal daily rate
PostgreSQL refint allows stack buffer overflow and SQL injection
PostgreSQL REFRESH PUBLICATION allows SQL injection via table name
PostgreSQL pg_restore_attribute_stats accepts values that cause query planning to read past end of stats array
PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion
PostgreSQL discloses MD5-hashed passwords via covert timing channel
PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory
PostgreSQL pg_createsubscriber allows SQL injection via subscription name
PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice
PostgreSQL timeofday() can disclose portions of server memory
Monitor PostgreSQL in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.