📦

postgresql

Vendor: postgresql

Actively Exploited 0 CISA KEV List
PoC / Exploits 10 Code Available
Total RCEs 20 Remote Access
Total CVEs 1897 Total Indexed
Avg. EPSS 4.24% Exploit Prob.
Latest CVE CVE-2026-6638 May 14

Security Vulnerability Index

Page 19 / 190
4.6 CVSS
CVE-2000-1199
Exploit Found

PostgreSQL stores usernames and passwords in plaintext in (1) pg_shadow and (2) pg_pwd, which allows attackers with sufficient privileges to gain access to databases.

EPSS: 0.91%
2.1 CVSS

Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file.

EPSS: 0.39%