An open index of dependabot pull requests across open source projects.

org.postgresql:postgresql

Ecosystem:
maven
Package URL:
pkg:maven/org.postgresql:postgresql
Total PRs:
2,532 Dependabot PRs
Latest PR:
1 day ago
Unique Repositories:
1,083 repositories
Unique Repos (30 days):
25 repositories
Security Advisories
Unescaped parameters in the PostgreSQL JDBC driver
GHSA-h86w-m5rm-xr33 CVE-2012-1618 HIGH published over 3 years ago • updated 1 day ago
Interaction error in the PostgreSQL JDBC driver before 8.2, when used with a PostgreSQL server with the "standard_conforming_strings" option enable...
pgjdbc Client Allows Fallback to Insecure Authentication Despite channelBinding=require Configuration
GHSA-hq9p-pm7w-8p54 CVE-2025-49146 HIGH published 5 months ago • updated 1 day ago
### Impact When the PostgreSQL JDBC driver is configured with channel binding set to `required` (default value is `prefer`), the driver would incor...
TemporaryFolder on unix-like systems does not limit access to created files
GHSA-562r-vg33-8x8h CVE-2022-41946 MODERATE published almost 3 years ago • updated about 1 hour ago
**Vulnerability** `PreparedStatement.setText(int, InputStream)` and `PreparedStatemet.setBytea(int, InputStream)` will create a temporary file i...
PostgreSQL JDBC Driver SQL Injection in ResultSet.refreshRow() with malicious column names
GHSA-r38f-c4h4-hqq2 CVE-2022-31197 HIGH published over 3 years ago • updated about 1 hour ago
### Impact _What kind of vulnerability is it? Who is impacted?_ The PGJDBC implementation of the `java.sql.ResultRow.refreshRow()` method is not p...
Improper Restriction of XML External Entity Reference
GHSA-88cc-g835-76rp CVE-2020-13692 HIGH published almost 4 years ago • updated about 23 hours ago
PostgreSQL JDBC Driver (aka PgJDBC) before 42.2.13 allows XXE.
Recent PRs (filtered by: Patch PRs )
Package Details
Name: org.postgresql:postgresql
Ecosystem: maven
PURL Type: maven
Package URL: pkg:maven/org.postgresql:postgresql
JSON API: View JSON
Security Advisories

9

Active advisories
CRITICAL 1
HIGH 5
MODERATE 2
LOW 1
View All maven Advisories
Package Information
Description:

PostgreSQL JDBC Driver Postgresql

Repository: https://github.com/pgjdbc/pgjdbc
Homepage: https://jdbc.postgresql.org
Latest Release: 42.7.6
6 months ago
Dependent Repos: 176,054
Dependent Packages: 3,652
Ranking: Top 0.0044% by dependent repos Top 0.0184% by dependent pkgs
PR Status
Open 1,128 (44.5%)
Merged 762 (30.1%)
Closed 495 (19.5%)
PR Types
Minor 91 (3.6%)
Major 2 (0.1%)
Patch 2,284 (90.2%)