<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:25:07 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-07701</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-07701</link>
      <description>bdu:2025-07701</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-07701</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0049 — Une vulnérabilité a été découverte dans PostgreSQL Pgpool-II. Elle
permet à un attaquant de provoquer une atteinte à la…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0049</link>
      <description>certfr-2023-avi-0049</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0049</guid>
    </item>
    <item>
      <title>EUVD-2026-258381</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-258381</link>
      <description>EUVD-2026-258381</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-258381</guid>
    </item>
    <item>
      <title>fkie_cve-2023-22332</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-22332</link>
      <description>&lt;p&gt;Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 series), 4.1.0 to 4.1.14 (4.1 series), 4.0.0 to 4.0.21 (4.0 series), All versions of 3.7 series, All versions of 3.6 series, All versions of 3.5 series, All versions of 3.4 series, and All versions of 3.3 series. A specific database user&amp;#39;s authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 series), 4.1.0 to 4.1.14 (4.1 series), 4.0.0 to 4.0.21 (4.0 series), All versions of 3.7 series, All versions of 3.6 series, All versions of 3.5 series, All versions of 3.4 series, and All versions of 3.3 series. A specific database user&amp;#39;s authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-22332</guid>
    </item>
    <item>
      <title>GHSA-w496-f5jm-w9c3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-w496-f5jm-w9c3</link>
      <description>&lt;p&gt;Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 series), 4.1.0 to 4.1.14 (4.1 series), 4.0.0 to 4.0.21 (4.0 series), All versions of 3.7 series, All versions of 3.6 series, All versions of 3.5 series, All versions of 3.4 series, and All versions of 3.3 series. A specific database user&amp;#39;s authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 series), 4.1.0 to 4.1.14 (4.1 series), 4.0.0 to 4.0.21 (4.0 series), All versions of 3.7 series, All versions of 3.6 series, All versions of 3.5 series, All versions of 3.4 series, and All versions of 3.3 series. A specific database user&amp;#39;s authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-w496-f5jm-w9c3</guid>
    </item>
    <item>
      <title>gsd-2023-22332</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-22332</link>
      <description>gsd-2023-22332</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-22332</guid>
    </item>
    <item>
      <title>jvndb-2023-000008</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2023-000008</link>
      <description>&lt;p&gt;Pgpool-II is cluster management tool. Pgpool-II contains an information disclosure vulnerability (CWE-200) in its watchdog function.&#13;
Note that, only systems that meet all of the following setting requirements are affected by this vulnerability.&#13;
&amp;lt;ul&amp;gt;&#13;
&amp;lt;li&amp;gt;Watchdog function is enabled (use_watchdog = on)&#13;
&amp;lt;li&amp;gt;&amp;#34;query mode&amp;#34; is used for the alive monitoring of watchdog (wd_lifecheck_method = &amp;#39;query&amp;#39;)&#13;
&amp;lt;li&amp;gt;Plain text password is set for wd_lifecheck_password&#13;
&amp;lt;/ul&amp;gt;&#13;
PgPool Global Development Group reported this vulnerability to IPA to notify users of its solution through JVN. JPCERT/CC and PgPool Global Development Group coordinated under the Information Security Early Warning Partnership.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Pgpool-II is cluster management tool. Pgpool-II contains an information disclosure vulnerability (CWE-200) in its watchdog function.&#13;
Note that, only systems that meet all of the following setting requirements are affected by this vulnerability.&#13;
&amp;lt;ul&amp;gt;&#13;
&amp;lt;li&amp;gt;Watchdog function is enabled (use_watchdog = on)&#13;
&amp;lt;li&amp;gt;&amp;#34;query mode&amp;#34; is used for the alive monitoring of watchdog (wd_lifecheck_method = &amp;#39;query&amp;#39;)&#13;
&amp;lt;li&amp;gt;Plain text password is set for wd_lifecheck_password&#13;
&amp;lt;/ul&amp;gt;&#13;
PgPool Global Development Group reported this vulnerability to IPA to notify users of its solution through JVN. JPCERT/CC and PgPool Global Development Group coordinated under the Information Security Early Warning Partnership.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2023-000008</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-22332</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-22332</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: pgpool2, Ubuntu:20.04:LTS: pgpool2, Ubuntu:22.04:LTS: pgpool2, Ubuntu:25.10: pgpool2&lt;/p&gt;
&lt;p&gt;Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 series), 4.1.0 to 4.1.14 (4.1 series), 4.0.0 to 4.0.21 (4.0 series), All versions of 3.7 series, All versions of 3.6 series, All versions of 3.5 series, All versions of 3.4 series, and All versions of 3.3 series. A specific database user&amp;#39;s authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: pgpool2, Ubuntu:20.04:LTS: pgpool2, Ubuntu:22.04:LTS: pgpool2, Ubuntu:25.10: pgpool2&lt;/p&gt;
&lt;p&gt;Information disclosure vulnerability exists in Pgpool-II 4.4.0 to 4.4.1 (4.4 series), 4.3.0 to 4.3.4 (4.3 series), 4.2.0 to 4.2.11 (4.2 series), 4.1.0 to 4.1.14 (4.1 series), 4.0.0 to 4.0.21 (4.0 series), All versions of 3.7 series, All versions of 3.6 series, All versions of 3.5 series, All versions of 3.4 series, and All versions of 3.3 series. A specific database user&amp;#39;s authentication information may be obtained by another database user. As a result, the information stored in the database may be altered and/or database may be suspended by a remote attacker who successfully logged in the product with the obtained credentials.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-22332</guid>
    </item>
  </channel>
</rss>
