CNNVD-202512-2146 Information

CNNVD ID

CNNVD-202512-2146

CVE-2025-13780

  • CNNVD Published: 2025-12-11

Description (Chinese)

pgAdmin是pgAdmin开源的一个用于开源数据库 PostgreSQL 的开源管理和开发平台。 pgAdmin 9.10及之前版本存在安全漏洞,该漏洞源于服务器模式下恢复PLAIN格式转储文件时可能导致远程代码执行。

Description (English)

pgAdmin is an open source management and development platform for the open source database PostgreSQL. PgAdmin 9.10 and previous versions had a security loophole, which stemmed from the possibility that remote code execution might occur if PLAIN files were restored in server mode.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

pgAdmin

Published

2025-12-11

Last Modified

2026-02-24

References

https://github.com/pgadmin-org/pgadmin4/issues/9368 https://access.redhat.com/security/cve/cve-2025-13780 https://vigilance.fr/vulnerability/pgAdmin-code-execution-via-PLAIN-format-dump-files-restores-49187

Patch

https://www.pgadmin.org/download/

Share on: