github.com/jackc/pgx/v5/pgproto3 vulnerability

Memory-safety vulnerability in github.com/jackc/pgx/v5.

Published 7 Apr 2026Updated 7 Sep 202626 sources
CVSS 9.8

What happened

Memory-safety vulnerability in github.com/jackc/pgx/v5.

Affected versions

github.com/jackc/pgx/v5/pgproto3: before 5.9.0 (semver) Fixed: See vendor advisory.

Why it matters

Review the vendor advisory and exposure of the affected product to determine operational impact.

Detection & mitigation

  • Apply vendor-provided updates or mitigations.
  • Review affected product exposure and access logs.

Public PoC references

No public PoC reference has passed the current publication threshold.