CVE-2026-33816: in github.com/jackc/pgx
Published Apr 7, 2026
·Updated
Memory-safety vulnerability in github.com/jackc/pgx/v5.
Affected Software
2 affected components
golang/github.com/jackc/pgx/v5
jackc Pgx Go<5.9.0
Event History
Apr 7, 2026
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
DescriptionWeakness
Data Sourced
via Red Hat·04:01 PM
DescriptionSeverityAffected Software
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-33816?
CVE-2026-33816 is classified as a memory-safety vulnerability that can lead to unexpected behavior in applications using the affected library.
2
How do I fix CVE-2026-33816?
To fix CVE-2026-33816, update to a patched version of the github.com/jackc/pgx library that resolves the memory safety issue.
3
What versions of github.com/jackc/pgx are affected by CVE-2026-33816?
CVE-2026-33816 affects all versions of github.com/jackc/pgx prior to the fixed release.
4
What impact does CVE-2026-33816 have on applications?
The impact of CVE-2026-33816 may include application crashes or data corruption due to the memory-safety flaws in the library.
5
Is CVE-2026-33816 publicly known?
Yes, CVE-2026-33816 is a publicly disclosed vulnerability, allowing developers to take necessary remediation steps.