An open index of dependabot pull requests across open source projects.

org.postgresql:postgresql

Ecosystem:
maven
Package URL:
pkg:maven/org.postgresql:postgresql
Total PRs:
2,557 Dependabot PRs
Latest PR:
3 days ago
Unique Repositories:
1,091 repositories
Unique Repos (30 days):
17 repositories
Security Advisories
Unescaped parameters in the PostgreSQL JDBC driver
GHSA-h86w-m5rm-xr33 CVE-2012-1618 HIGH published over 3 years ago • updated 14 days ago
Interaction error in the PostgreSQL JDBC driver before 8.2, when used with a PostgreSQL server with the "standard_conforming_strings" option enable...
org.postgresql:postgresql vulnerable to SQL Injection via line comment generation
GHSA-24rp-q3w6-vc56 CVE-2024-1597 CRITICAL published almost 2 years ago • updated about 19 hours ago
# Impact SQL injection is possible when using the non-default connection property `preferQueryMode=simple` in combination with application code tha...
PostgreSQL JDBC Driver SQL Injection in ResultSet.refreshRow() with malicious column names
GHSA-r38f-c4h4-hqq2 CVE-2022-31197 HIGH published over 3 years ago • updated about 21 hours ago
### Impact _What kind of vulnerability is it? Who is impacted?_ The PGJDBC implementation of the `java.sql.ResultRow.refreshRow()` method is not p...
TemporaryFolder on unix-like systems does not limit access to created files
GHSA-562r-vg33-8x8h CVE-2022-41946 MODERATE published about 3 years ago • updated about 21 hours ago
**Vulnerability** `PreparedStatement.setText(int, InputStream)` and `PreparedStatemet.setBytea(int, InputStream)` will create a temporary file i...
Path traversal in org.postgresql:postgresql
GHSA-727h-hrw8-jg8q CVE-2022-26520 LOW published over 3 years ago • updated about 21 hours ago
In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files t...
Recent PRs
Package Details
Name: org.postgresql:postgresql
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.postgresql:postgresql
JSON API: View JSON
Security Advisories

9

Active advisories
CRITICAL 1
HIGH 5
MODERATE 2
LOW 1
View All maven Advisories
Package Information
Description:

PostgreSQL JDBC Driver Postgresql

Repository: https://github.com/pgjdbc/pgjdbc
Homepage: https://jdbc.postgresql.org
Latest Release: 42.7.6
6 months ago
Dependent Repos: 176,054
Dependent Packages: 3,652
Ranking: Top 0.0044% by dependent repos Top 0.0184% by dependent pkgs
PR Status
Open 1,144 (44.7%)
Merged 763 (29.8%)
Closed 503 (19.7%)
PR Types
Minor 92 (3.6%)
Major 2 (0.1%)
Patch 2,308 (90.3%)