Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
699494
AlmaLinux
5018
Alpaquita
10148
Alpine
4248
Android
3402
Azure Linux
12016
BellSoft Hardened Containers
499
Bitnami
8011
Chainguard
6851
CleanStart
1304
CRAN
14
crates.io
2448
Debian
57840
Echo
5259
GHC
3
GIT
81657
GitHub Actions
53
Go
7065
Hackage
32
Hex
133
Julia
936
Linux
15361
Mageia
5967
Maven
6537
MinimOS
65120
npm
219979
NuGet
1714
opam
16
openEuler
6929
openSUSE
12977
OSS-Fuzz
3924
Packagist
6395
Pub
11
PyPI
19998
Red Hat
20473
Rocky Linux
3364
Root
15480
RubyGems
1972
SUSE
20645
SwiftURL
53
TuxCare
5651
Ubuntu
55507
VSCode
20
Wolfi
4464
ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-4639
npm/pg-expense-example
Malicious code in pg-expense-example (npm)
22 May
No fix available
MAL-2025-13132
npm/@zalastax/nolb-pg
Malicious code in @zalastax/nolb-pg (npm)
14 Aug 2025
No fix available
MAL-2025-13714
npm/@zalastax/nolb-react-pg
Malicious code in @zalastax/nolb-react-pg (npm)
14 Aug 2025
No fix available
MAL-2025-16622
npm/cashfree-pg-koa-app
Malicious code in cashfree-pg-koa-app (npm)
14 Aug 2025
No fix available
GHSA-ff9h-848c-4xfj
npm/pg-promise
pg-promise SQL Injection vulnerability
12 Jun 2025
Fix available
Severity - 5.4 (Medium)
MAL-2024-9670
npm/instrumentation-pg
Malicious code in instrumentation-pg (npm)
16 Oct 2024
No fix available
MAL-2022-7152
npm/winston-pg-native
Malicious code in winston-pg-native (npm)
20 Jun 2022
No fix available
GHSA-j32j-2hxv-rqf7
npm/libpq
npm/pg-native
pg-native and libpq vulnerable to uncontrolled resource consumption
18 Jun 2022
Fix available
Severity - 7.5 (High)
MAL-2022-2320
npm/dai-pg
Malicious code in dai-pg (npm)
02 Jun 2022
No fix available
MAL-2022-5312
npm/pg-ng-popover
Malicious code in pg-ng-popover (npm)
18 May 2022
No fix available
GHSA-xqh8-5j36-4556
npm/connect-pg-simple
SQL Injection in connect-pg-simple
26 Aug 2019
Fix available
Severity - 7.3 (High)
GHSA-wc9v-mj63-m9g5
npm/pg
Remote Code Execution in pg
24 Jul 2018
Fix available
Severity - 9.8 (Critical)
npm - OSV