VYPR

postgresql-operator

by Canonical

CVEs (1)

  • CVE-2026-104055MedOct 2, 2026
    risk 0.27cvss —epss —

    The postgresql-operator charm runs a Prometheus postgres_exporter to collect database metrics using a dedicated "monitoring" PostgreSQL user. On database connection errors, the exporter writes the monitoring user's password in cleartext to its logs. Any actor able to read those…