VDB

CVE-2024-44905

CVE-2024-44905 PUBLISHED CVSS 6.5 MEDIUM

go-pg SQL injection vulnerability via the component /types/append_value.go

EPSS 0.20% · 41.9th percentile

Risk Scores

CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS Score
0.20%
41.9th percentile

Affected Products

VendorProductVersions
github.comgo-pg/pg/v100
uptracepg10.13.0
github.comgo-pg/pg/v90
n/an/an/a
github.comgo-pg/pg0

Timeline

  • Jun 12, 2025 CVE Published
  • Jun 12, 2025 Coalition ESS Score
  • Jun 12, 2025 PoC Published
  • Jun 13, 2025 EPSS Score
  • Jun 16, 2025 Coalition ESS Score
  • Jun 17, 2025 Coalition ESS Score
  • Jun 23, 2025 EPSS Score
  • Jul 2, 2025 Coalition ESS Score
  • Jul 4, 2025 EPSS Score
  • Jul 9, 2025 Coalition ESS Score
  • Jul 14, 2025 EPSS Score
  • Jul 25, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›