vendor

pgadmin

6 thingsrelated by NVD

Its products

pgadmin 4 6

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

pgAdmin 4's Backup tool appended the client-supplied 'database' field from the /backup/job/<sid>/object request to the pg_dump argument…
CVE-2026-86864
Severity high
pgAdmin 4's Webserver authentication source is intended to accept an identity asserted by the web server or reverse proxy in front of…
CVE-2026-86863
Severity critical
pgAdmin 4's Restore and Maintenance tools passed the client-supplied 'database' field directly as the value of the --dbname option given to…
CVE-2026-86862
Severity medium
pgAdmin 4's File Manager save_file endpoint, which backs saving from the Query Tool and ERD, validated the requested path with…
CVE-2026-86861
Severity medium
pgAdmin <= 9.9  is affected by a vulnerability in the LDAP authentication mechanism allows bypassing TLS certificate verification.
CVE-2025-12765
Severity high
pgAdmin <= 9.9  is affected by an LDAP injection vulnerability in the LDAP authentication flow that allows an attacker to inject special…
CVE-2025-12764
Severity high