Collected every two hours from specialised publications — each link leads to the original article.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes one vulnerability is now available.
An update that fixes 6 vulnerabilities is now available.
An update that fixes 6 vulnerabilities is now available.
An issue has been found in pgextwlist, a Postgres extensions that implements extension whitelisting. The issue is related to substituting extension schemas or …
Fedora 44 has released an update for pgAdmin 4 to version 9.17, fixing various security vulnerabilities and enhancing features for PostgreSQL administration an…
Guillaume Winter discovered that pgextwlist, an extension for PostgreSQL implementing a whitelist mechanism for PostgreSQL extensions, was susceptible to SQL i…
Cybersecurity researchers have called attention to a "massive campaign" that has systematically targeted cloud native environments to set up malicious infrastr…
Veeam has released security updates to address multiple flaws in its Backup & Replication software, including a "critical" issue that could result in remote co…
PgBouncer is a lightweight connection pooler for PostgreSQL. CVE-2025-12819 Untrusted search path in auth_query connection handler in PgBouncer before 1.25.1 a…
Fixes CVE-2025-13372: Potential SQL injection in FilteredRelation column aliases on PostgreSQL Fixes CVE-2025-64460: Potential denial-of-service vulnerability …
Fixes CVE-2025-13372: Potential SQL injection in FilteredRelation column aliases on PostgreSQL Fixes CVE-2025-64460: Potential denial-of-service vulnerability …
An authentication bypass was found in n pgpool-II, the connection pool server and replication proxy for PostgreSQL. For Debian 11 bullseye, this problem has be…
Redis could be made to crash or run programs if it received specially crafted network traffic from an authenticated user.
PgBouncer is a lightweight connection pooler for PostgreSQL. CVE-2021-3539
Keeping WordPress secure can be challenging, especially when considering Linux security concerns in a typical LAMP stack setup. Most WordPress security issues …
Multiple vulnerabilities have been fixed in the PostgreSQL JDBC Driver. CVE-2022-31197