| Release | Version |
|---|---|
| bullseye | 42.2.15-1+deb11u1 |
| bullseye (security) | 42.2.15-1+deb11u2 |
| bookworm | 42.5.5-0+deb12u1 |
| trixie | 42.7.7-1 |
| forky | 42.7.13-1 |
| sid | 42.7.13-1 |
| Bug | bullseye | bookworm | trixie | forky | sid | Description |
|---|---|---|---|---|---|---|
| CVE-2026-54291 | vulnerable (no DSA, postponed) | vulnerable (no DSA, postponed) | vulnerable (no DSA) | fixed | fixed | pgjdbc is an open source postgresql JDBC Driver. In releases 42.7.4 th ... |
| CVE-2026-42198 | vulnerable (no DSA, postponed) | vulnerable (no DSA, postponed) | vulnerable (no DSA) | fixed | fixed | pgjdbc is an open source postgresql JDBC Driver. From version 42.2.0 t ... |
| Bug | Description |
|---|---|
| CVE-2025-49146 | pgjdbc is an open source postgresql JDBC Driver. From 42.7.4 and until ... |
| CVE-2024-1597 | pgjdbc, the PostgreSQL JDBC Driver, allows attacker to inject SQL if u ... |
| CVE-2022-41946 | pgjdbc is an open source postgresql JDBC Driver. In affected versions ... |
| CVE-2022-31197 | PostgreSQL JDBC Driver (PgJDBC for short) allows Java programs to conn ... |
| CVE-2022-26520 | In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or pro ... |
| CVE-2022-21724 | pgjdbc is the offical PostgreSQL JDBC Driver. A security hole was foun ... |
| CVE-2020-13692 | PostgreSQL JDBC Driver (aka PgJDBC) before 42.2.13 allows XXE. |
| CVE-2018-10936 | A weakness was found in postgresql-jdbc before version 42.2.5. It was ... |
| CVE-2012-1618 | Interaction error in the PostgreSQL JDBC driver before 8.2, when used ... |
| DSA / DLA | Description |
|---|---|
| DLA-3995-1 | libpgjava - security update |
| DLA-3812-1 | libpgjava - security update |
| DLA-3218-1 | libpgjava - security update |
| DLA-3140-1 | libpgjava - security update |
| DSA-5196-1 | libpgjava - security update |
| DLA-3018-1 | libpgjava - security update |