VYPR
Unrated severityNVD Advisory· Published Aug 7, 2025· Updated Nov 4, 2025

Incorrect results returned from Rows.Scan in database/sql

CVE-2025-47907

Description

Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the returned Rows can result in unexpected results if other queries are being made in parallel. This can result in a race condition that may overwrite the expected results with those of another query, causing the call to Scan to return either unexpected results from the other query or an error.

Affected products

1
  • Go standard library/database/sqlv5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.