CVE-2026-9617
- EPSS 0.25%
- Veröffentlicht 27.05.2026 13:55:10
- Zuletzt bearbeitet 02.06.2026 00:40:18
PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by creating a table and placing malicious code inside a column identifier. If a superuser calls the k-anonymity function, the malicious code is executed wi...
CVE-2024-2339
- EPSS 0.55%
- Veröffentlicht 08.03.2024 20:15:46
- Zuletzt bearbeitet 12.02.2025 16:44:09
PostgreSQL Anonymizer v1.2 contains a vulnerability that allows a user who owns a table to elevate to superuser. A user can define a masking function for a column and place malicious code in that function. When a privileged user applies the masking ...
CVE-2024-2338
- EPSS 0.46%
- Veröffentlicht 08.03.2024 20:15:45
- Zuletzt bearbeitet 12.02.2025 16:44:27
PostgreSQL Anonymizer v1.2 contains a SQL injection vulnerability that allows a user who owns a table to elevate to superuser when dynamic masking is enabled. PostgreSQL Anonymizer enables users to set security labels on tables to mask specified colu...