Unrated severityNVD Advisory· Published Aug 18, 2025· Updated Aug 18, 2025
aiven-db-migrate allows Privilege Escalation through use of psql during migration
CVE-2025-55283
Description
aiven-db-migrate is an Aiven database migration tool. Prior to 1.0.7, there is a privilege escalation vulnerability that allows elevation to superuser inside PostgreSQL databases during a migration from an untrusted source server. The vulnerability stems from psql executing commands embedded in a dump from the source server. This vulnerability is fixed in 1.0.7.
Affected products
2- Range: <1.0.7
- aiven/aiven-db-migratev5Range: < 1.0.7
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/aiven/aiven-db-migrate/commit/36f6c7f7d06216975f625da0a1cb514253c4b3dfmitrex_refsource_MISC
- github.com/aiven/aiven-db-migrate/security/advisories/GHSA-wqhc-grmj-fjvgmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.