Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: databases Clear
ID Title
CVE-2026-72642 The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
CVE-2026-6471 Vulnerability in postgresql (CVE-2026-6471)
vulnerability in postgresql (CVE-2026-6471). Successful exploitation can lead to full system takeover.
CVE-2026-6464 Vulnerability in postgresql (CVE-2026-6464)
vulnerability in postgresql (CVE-2026-6464). Successful exploitation can lead to full system takeover.
CVE-2026-18408 Vulnerability in postgresql (CVE-2026-18408)
vulnerability in postgresql (CVE-2026-18408). Successful exploitation can lead to full system takeover.
CVE-2026-19385 Vulnerability in postgresql (CVE-2026-19385)
vulnerability in postgresql (CVE-2026-19385). Successful exploitation can lead to full system takeover.
CVE-2026-15742 Vulnerability in postgresql (CVE-2026-15742)
vulnerability in postgresql (CVE-2026-15742). Successful exploitation can lead to full system takeover.
CVE-2026-16238 Vulnerability in postgresql (CVE-2026-16238)
vulnerability in postgresql (CVE-2026-16238). Successful exploitation can lead to full system takeover.
CVE-2026-16239 Vulnerability in postgresql (CVE-2026-16239)
vulnerability in postgresql (CVE-2026-16239). Successful exploitation can lead to full system takeover.
CVE-2026-14677 Vulnerability in postgresql (CVE-2026-14677)
vulnerability in postgresql (CVE-2026-14677). Successful exploitation can lead to full system takeover.
CVE-2026-14679 Vulnerability in postgresql (CVE-2026-14679)
vulnerability in postgresql (CVE-2026-14679). Risk of unauthorized operations or information disclosure.
CVE-2026-14680 Vulnerability in postgresql (CVE-2026-14680)
vulnerability in postgresql (CVE-2026-14680). Successful exploitation can lead to full system takeover.
CVE-2026-15741 SQL Injection in sqli (CVE-2026-15741)
SQL injection in sqli (CVE-2026-15741). Successful exploitation can lead to full system takeover.
CVE-2026-14669 Vulnerability in postgresql (CVE-2026-14669)
vulnerability in postgresql (CVE-2026-14669). Successful exploitation can lead to full system takeover.
CVE-2026-14668 Vulnerability in postgresql (CVE-2026-14668)
vulnerability in postgresql (CVE-2026-14668). Confidential information can be exposed externally.
CVE-2026-14676 Vulnerability in postgresql (CVE-2026-14676)
vulnerability in postgresql (CVE-2026-14676). Successful exploitation can lead to full system takeover.
CVE-2026-14670 Vulnerability in postgresql (CVE-2026-14670)
vulnerability in postgresql (CVE-2026-14670). Successful exploitation can lead to full system takeover.
CVE-2026-14671 Vulnerability in postgresql (CVE-2026-14671)
vulnerability in postgresql (CVE-2026-14671). Successful exploitation can lead to full system takeover.
CVE-2026-14664 Vulnerability in postgresql (CVE-2026-14664)
vulnerability in postgresql (CVE-2026-14664). Successful exploitation can lead to full system takeover.
CVE-2026-14662 Vulnerability in postgresql (CVE-2026-14662)
vulnerability in postgresql (CVE-2026-14662). Successful exploitation can lead to full system takeover.
CVE-2026-18692 An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
CVE-2026-18691 An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
CVE-2026-17346 The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON /...
The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON /...
CVE-2026-51304 Use-After-Free in dos (CVE-2026-51304)
vulnerability in dos (CVE-2026-51304). Risk of unauthorized operations or information disclosure.
CVE-2026-51296 Use-After-Free in sqlite (CVE-2026-51296)
vulnerability in sqlite (CVE-2026-51296). Risk of unauthorized operations or information disclosure.
CVE-2026-51297 Use-After-Free in sqlite (CVE-2026-51297)
vulnerability in sqlite (CVE-2026-51297). Successful exploitation can lead to full system takeover.
CVE-2026-51302 Use-After-Free in dos (CVE-2026-51302)
vulnerability in dos (CVE-2026-51302). Successful exploitation can lead to full system takeover.
CVE-2026-66373 Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE,...
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE,...
CVE-2026-13078 Vulnerability in mongodb (CVE-2026-13078)
vulnerability in mongodb (CVE-2026-13078). Confidential information can be exposed externally.
CVE-2026-13077 Out-of-Bounds Read in mongodb (CVE-2026-13077)
vulnerability in mongodb (CVE-2026-13077). Risk of unauthorized operations or information disclosure.
CVE-2026-13072 Vulnerability in mongodb (CVE-2026-13072)
vulnerability in mongodb (CVE-2026-13072). Successful exploitation can lead to full system takeover.
CVE-2026-13059 Vulnerability in mongodb (CVE-2026-13059)
vulnerability in mongodb (CVE-2026-13059). Confidential information can be exposed externally.
CVE-2026-47835 Vulnerability in CVE-2026-47835 (CVE-2026-47835)
vulnerability in CVE-2026-47835 (CVE-2026-47835). Confidential information can be exposed externally.
CVE-2026-48163 OS Command Injection in mariadb (CVE-2026-48163)
OS command injection in mariadb (CVE-2026-48163). Successful exploitation can lead to full system takeover.
CVE-2026-48165 OS Command Injection in mariadb (CVE-2026-48165)
OS command injection in mariadb (CVE-2026-48165). Successful exploitation can lead to full system takeover.
CVE-2026-44168 OS Command Injection in mariadb (CVE-2026-44168)
OS command injection in mariadb (CVE-2026-44168). Successful exploitation can lead to full system takeover.
CVE-2026-11933 Post-authentication use-after-free in server-side JavaScript BSON-to-array conversion
Post-authentication use-after-free in server-side JavaScript BSON-to-array conversion
CVE-2026-9753 Vulnerability in mongodb (CVE-2026-9753)
vulnerability in mongodb (CVE-2026-9753). Confidential information can be exposed externally. Mitigation: upgrade to `7.0.35, 8.0.24, 8.2.10, 8.3.3` or later.
CVE-2026-9742 Vulnerability in mongodb (CVE-2026-9742)
vulnerability in mongodb (CVE-2026-9742). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.2.10, 8.3.3` or later.
CVE-2026-9740 Vulnerability in mongodb (CVE-2026-9740)
vulnerability in mongodb (CVE-2026-9740). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.35, 8.0.24, 8.2.10, 8.3.3` or later.
CVE-2026-11824 SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
CVE-2026-11822 SQLite before 3.53.2 Memory Corruption in FTS5 Extension
SQLite before 3.53.2 Memory Corruption in FTS5 Extension
CVE-2026-11400 AWS-JDBC Wrapper: Privilege Escalation in Aurora PostgreSQL instance
AWS-JDBC Wrapper: Privilege Escalation in Aurora PostgreSQL instance
CVE-2026-47784 Vulnerability in memcached (CVE-2026-47784)
vulnerability in memcached (CVE-2026-47784). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.6.42` or later.
CVE-2026-47783 Vulnerability in memcached (CVE-2026-47783)
vulnerability in memcached (CVE-2026-47783). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `1.6.42` or later.
CVE-2026-6476 SQL Injection in postgresql (CVE-2026-6476)
SQL injection in postgresql (CVE-2026-6476). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `17.10.0, 18.4.0` or later.
CVE-2026-6473 Vulnerability in postgresql (CVE-2026-6473)
vulnerability in postgresql (CVE-2026-6473). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
CVE-2026-6479 Vulnerability in postgresql (CVE-2026-6479)
vulnerability in postgresql (CVE-2026-6479). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
CVE-2026-6475 Vulnerability in postgresql (CVE-2026-6475)
vulnerability in postgresql (CVE-2026-6475). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
CVE-2026-6477 Vulnerability in postgresql (CVE-2026-6477)
vulnerability in postgresql (CVE-2026-6477). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.
CVE-2026-6637 SQL Injection in postgresql (CVE-2026-6637)
SQL injection in postgresql (CVE-2026-6637). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `14.23.0, 15.18.0, 16.14.0, 17.10.0, 18.4.0` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →