An open index of dependabot pull requests across open source projects.

org.postgresql:postgresql

Ecosystem:
maven
Package URL:
pkg:maven/org.postgresql:postgresql
Total PRs:
2,521 Dependabot PRs
Latest PR:
about 23 hours ago
Unique Repositories:
1,082 repositories
Unique Repos (30 days):
49 repositories
Security Advisories
pgjdbc Does Not Check Class Instantiation when providing Plugin Classes
GHSA-v7wg-cpwc-24m4 CVE-2022-21724 HIGH published almost 4 years ago • updated 3 months ago
### Impact pgjdbc instantiates plugin instances based on class names provided via `authenticationPluginClassName`, `sslhostnameverifier`, `socketF...
pgjdbc Arbitrary File Write Vulnerability
GHSA-673j-qm5f-xpv8 MODERATE published over 3 years ago • updated 5 months ago
### Overview The connection properties for configuring a pgjdbc connection are not meant to be exposed to an unauthenticated attacker. While allowi...
Unescaped parameters in the PostgreSQL JDBC driver
GHSA-h86w-m5rm-xr33 CVE-2012-1618 HIGH published over 3 years ago • updated 5 months ago
Interaction error in the PostgreSQL JDBC driver before 8.2, when used with a PostgreSQL server with the "standard_conforming_strings" option enable...
pgjdbc Client Allows Fallback to Insecure Authentication Despite channelBinding=require Configuration
GHSA-hq9p-pm7w-8p54 CVE-2025-49146 HIGH published 5 months ago • updated 3 months ago
### Impact When the PostgreSQL JDBC driver is configured with channel binding set to `required` (default value is `prefer`), the driver would incor...
TemporaryFolder on unix-like systems does not limit access to created files
GHSA-562r-vg33-8x8h CVE-2022-41946 MODERATE published almost 3 years ago • updated 3 months ago
**Vulnerability** `PreparedStatement.setText(int, InputStream)` and `PreparedStatemet.setBytea(int, InputStream)` will create a temporary file i...
Recent PRs
Package Details
Name: org.postgresql:postgresql
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.postgresql:postgresql
JSON API: View JSON
Security Advisories

9

Active advisories
CRITICAL 1
HIGH 5
MODERATE 2
LOW 1
View All maven Advisories
Package Information
Description:

PostgreSQL JDBC Driver Postgresql

Repository: https://github.com/pgjdbc/pgjdbc
Homepage: https://jdbc.postgresql.org
Latest Release: 42.7.6
5 months ago
Dependent Repos: 176,054
Dependent Packages: 3,652
Ranking: Top 0.0044% by dependent repos Top 0.0184% by dependent pkgs
PR Status
Open 1,125 (44.6%)
Merged 762 (30.2%)
Closed 487 (19.3%)
PR Types
Minor 91 (3.6%)
Major 2 (0.1%)
Patch 2,273 (90.2%)