CVE-2026-50738
- EPSS 0.3%
- Veröffentlicht 28.07.2026 17:55:58
- Zuletzt bearbeitet 24.08.2026 16:46:41
A use-after-free condition exists in pglogical's worker signaling code, where a worker structure can be dereferenced after the underlying slot has been freed or recycled during normal worker lifecycle events. The condition is reachable during normal ...
CVE-2026-50737
- EPSS 0.19%
- Veröffentlicht 28.07.2026 17:55:43
- Zuletzt bearbeitet 24.08.2026 17:09:20
When applying replicated changes for a row that is missing one or more columns, pglogical evaluates the affected table's default expressions on the subscriber. Because the apply worker runs at a privilege level equivalent to a PostgreSQL superuser in...
CVE-2026-50736
- EPSS 0.19%
- Veröffentlicht 28.07.2026 17:55:27
- Zuletzt bearbeitet 24.08.2026 17:13:13
The pglogical queue mechanism, used to convey out-of-band commands such as replicated DDL from a publisher to a subscriber, executes message payloads on the subscriber at the privilege level of the apply worker, which is equivalent to a PostgreSQL su...
CVE-2026-50735
- EPSS 0.19%
- Veröffentlicht 28.07.2026 17:55:12
- Zuletzt bearbeitet 24.08.2026 17:13:55
pglogical's apply worker does not sufficiently validate the length of certain fields in incoming replication protocol messages before copying them, resulting in an out-of-bounds read. A party acting as the publisher for a subscription, for example a ...