Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Plv8 Deferred Trigger Privilege Escalation
Vulnerability Description
A user who can create objects in a database with plv8 3.2.1 installed is able to cause deferred triggers to execute as the Superuser during autovacuum.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:H
Vulnerability Type
未预期的状态编码或返回值
Vulnerability Title
Plv8 安全漏洞
Vulnerability Description
Plv8是一个共享库,提供由 V8 Javascript 引擎支持的 PostgreSQL 过程语言。 Plv8 3.2.1版本存在安全漏洞,该漏洞源于数据库中创建对象的用户能够在autovacuum期间以超级用户身份执行延迟触发器。
CVSS Information
N/A
Vulnerability Type
N/A