Skip to content
Noroxi

EnterpriseDB records

16 published records for vendor enterprisedb.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
37.5%
Median publish → KEV
No record has entered KEV

All records

16 records
  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    CriticalCVSS 9.8No exploitEPSS 1%

    enterprisedb · postgres advanced serverDec 12, 2023

  • The pglogical queue mechanism, used to convey out-of-band commands such as replicated DDL from a publisher to a subscriber, executes message

    CriticalCVSS 9.0No exploitEPSS 0%

    enterprisedb · pglogicalJul 28, 2026

  • When applying replicated changes for a row that is missing one or more columns, pglogical evaluates the affected table's default expressions

    CriticalCVSS 9.0No exploitEPSS 0%

    enterprisedb · pglogicalJul 28, 2026

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    HighCVSS 8.8No exploitEPSS 1%

    enterprisedb · postgres advanced serverDec 12, 2023

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    HighCVSS 8.8No exploitEPSS 1%

    enterprisedb · postgres advanced serverDec 12, 2023

  • A use-after-free condition exists in pglogical's worker signaling code, where a worker structure can be dereferenced after the underlying sl

    HighCVSS 7.7No exploitEPSS 1%

    enterprisedb · pglogicalJul 28, 2026

  • EnterpriseDB EDB Postgres Advanced Server (EPAS) before 14.6.0 logs unredacted passwords in situations where optional parameters are used wi

    HighCVSS 7.5No exploitEPSS 0%

    enterprisedb · postgres advanced serverApr 23, 2023

  • CVE-2007-4639
    28Monitor

    EnterpriseDB Advanced Server 8.2 does not properly handle certain debugging function calls that occur before a call to pldbg_create_listener

    MediumCVSS 6.5Proof of conceptEPSS 5%

    enterprisedb · postgres advanced serverAug 31, 2007

  • EDB Hybrid Manager contains a flaw that allows an unauthenticated attacker to directly access certain gRPC endpoints.

    HighCVSS 7.0No exploitEPSS 0%

    enterprisedb · hybrid managerDec 15, 2025

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    MediumCVSS 6.5No exploitEPSS 1%

    enterprisedb · postgres advanced serverDec 12, 2023

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    MediumCVSS 6.5No exploitEPSS 1%

    enterprisedb · postgres advanced serverDec 12, 2023

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    MediumCVSS 6.5No exploitEPSS 1%

    enterprisedb · postgres advanced serverDec 12, 2023

  • pglogical's apply worker does not sufficiently validate the length of certain fields in incoming replication protocol messages before copyin

    MediumCVSS 6.1No exploitEPSS 0%

    enterprisedb · pglogicalJul 28, 2026

  • CVE-2026-0949
    19Monitor

    PEM versions prior to 9.8.1 are affected by a stored Cross-site Scripting (XSS) vulnerability that allows users with access to the Manage Ch

    MediumCVSS 4.8No exploitEPSS 0%

    enterprisedb · postgres enterprise managerJan 16, 2026

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    MediumCVSS 4.3No exploitEPSS 0%

    enterprisedb · postgres advanced serverDec 12, 2023

  • An issue was discovered in EnterpriseDB Postgres Advanced Server (EPAS) before 11.21.32, 12.x before 12.16.20, 13.x before 13.12.16, 14.x be

    MediumCVSS 4.3No exploitEPSS 0%

    enterprisedb · postgres advanced serverDec 12, 2023