VYPR

PostgreSQL

by Enterprisedb

CVEs (2)

  • CVE-2019-10128HigMar 19, 2021
    risk 0.51cvss 7.8epss 0.00

    A vulnerability was found in postgresql versions 11.x prior to 11.3. The Windows installer for EnterpriseDB-supplied PostgreSQL does not lock down the ACL of the binary installation directory or the ACL of the data directory; it keeps the inherited ACL. In the default…

  • CVE-2026-50736HigJul 28, 2026
    risk 0.49cvss 7.5epss 0.00

    The pglogical queue mechanism, used to convey out-of-band commands such as replicated DDL from a publisher to a subscriber, executes message payloads on the subscriber at the privilege level of the apply worker, which is equivalent to a PostgreSQL superuser in default…