VYPR

Postgrex.Notifications

by Ecto

CVEs (1)

  • CVE-2026-58225Jul 10, 2026
    risk 0.00cvss epss 0.00

    SQL Injection vulnerability in elixir-ecto postgrex allows an attacker who can influence a LISTEN channel name to inject SQL into the reconnect replay query, causing a denial of service of the notification connection. Postgrex.Notifications sanitizes channel names with…