Vulnerability index

Browse CVEs

43 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2023-1907 A vulnerability was found in pgadmin. Users logging into pgAdmin running in server mode using LDAP authentication may be attached to another user's s… Pgadmin 7.0+ Fix from $1,9502025-01-09 HIGH 7.1 CVE-2025-0218 When batch jobs are executed by pgAgent, a script is created in a temporary directory and then executed. In versions of pgAgent prior to 4.2.3, an in… Pgagent 4.2.3+ Fix from $1,9502025-01-07 MEDIUM 6.5 CVE-2024-9014EPSS 10% pgAdmin versions 8.11 and earlier are vulnerable to a security flaw in OAuth2 authentication. This vulnerability allows an attacker to potentially ob… Pgadmin 4 8.12+ Fix from $1,6002024-09-23 MEDIUM 5.3 CVE-2024-6238 pgAdmin <= 8.8 has an installation Directory permission issue. Because of this issue, attackers can gain unauthorised access to the installation dire… Pgadmin 4 8.9+ Fix from $1,6002024-06-25 HIGH 8.8 CVE-2024-4215 pgAdmin <= 8.5 is affected by a multi-factor authentication bypass vulnerability. This vulnerability allows an attacker with knowledge of a legitimat… Pgadmin 4 8.6+ Fix from $1,9502024-05-02 MEDIUM 5.4 CVE-2024-4216 pgAdmin <= 8.5 is affected by XSS vulnerability in /settings/store API response json payload. This vulnerability allows attackers to execute maliciou… Pgadmin 4 8.6+ Fix from $1,6002024-05-02 CRITICAL 9.8 CVE-2024-3116EPSS 65% pgAdmin <= 8.4 is affected by a Remote Code Execution (RCE) vulnerability through the validate binary path API. This vulnerability allows attackers … Pgadmin 4 after 8.4 Fix from $2,3002024-04-04 CRITICAL 9.9 CVE-2024-2044EPSS 79% pgAdmin <= 8.3 is affected by a path-traversal vulnerability while deserializing users’ sessions in the session handling code. If the server is runni… Pgadmin 4 8.4+ Fix from $2,3002024-03-07 HIGH 8.8 CVE-2023-5002 A flaw was found in pgAdmin. This issue occurs when the pgAdmin server HTTP API validates the path a user selects to external PostgreSQL utilities su… Pgadmin 4 7.7+ Fix from $1,9502023-09-22 MEDIUM 6.5 CVE-2023-0241EPSS 9% pgAdmin 4 versions prior to v6.19 contains a directory traversal vulnerability. A user of the product may change another user's settings or alter the… Pgadmin 4 6.19+ Fix from $1,6002023-03-27 MEDIUM 6.1 CVE-2023-22298 Open redirect vulnerability in pgAdmin 4 versions prior to v6.14 allows a remote unauthenticated attacker to redirect a user to an arbitrary web site… Pgadmin 4 6.14+ Fix from $1,6002023-01-17 HIGH 8.8 CVE-2022-4223EPSS 80% The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user selects to external PostgreSQL utilities such as pg_d… Pgadmin 4 6.17+ Fix from $1,9502022-12-13 MEDIUM 6.5 CVE-2022-0959 A malicious, but authorised and authenticated user can construct an HTTP request using their existing CSRF token and session cookie to manually uploa… Pgadmin 4 6.7+ Fix from $1,6002022-03-16