CVE-2026-33815: in github.com/jackc/pgx
Published Apr 7, 2026
·Updated
Memory-safety vulnerability in github.com/jackc/pgx/v5.
Affected Software
2 affected components
golang/github.com/jackc/pgx/v5
jackc Pgx Go
Event History
Apr 7, 2026
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
DescriptionWeakness
Data Sourced
via Red Hat·04:01 PM
DescriptionSeverityAffected Software
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-33815?
CVE-2026-33815 has a critical severity rating of 9.8 according to the CVSS 3.1 scoring system.
2
What type of vulnerability is identified by CVE-2026-33815?
CVE-2026-33815 is a memory-safety vulnerability categorized as an Out-of-bounds Read.
3
Which software is affected by CVE-2026-33815?
CVE-2026-33815 affects the pgx library version 5 from github.com/jackc/pgx.
4
How do I mitigate the risk associated with CVE-2026-33815?
To mitigate the risk from CVE-2026-33815, you should upgrade to the latest patched version of the pgx library.
5
When was CVE-2026-33815 published?
CVE-2026-33815 was published on April 7, 2026.