CVE-2026-78155Critical· 9.9▾ Midnightprivilege escalation in StackGres operator allows a low-privilege tenant who owns a database to gain administrator privileges
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 54.5 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 16.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.3%
0.3% → 0.3%
privilege escalation in StackGres operator allows a low-privilege tenant who owns a database to gain administrator privileges
stackgres < 1.19.0Upgrade past the affected range:
stackgres 1.19.0Connected by shared product, vendor, weakness, or advisory.
CVE-2026-53712HighOnGres SCRAM silent channel-binding authentication downgrade via unsupported certificate algorithms
CVE-2026-81697Medium· 5.5openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8 contain a CWD-relative configuration file resolution flaw in crypt_settings.py, where CONFIG_FILE (originally the absolute per-user path ~/.crypt_settings.json) is reassigne…
CVE-2026-55769NoneCloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments
CVE-2026-92587Medium· 5.0n8n is a workflow automation platform
CVE-2026-0307Medium· 5.9GlobalProtect App: Local Privilege Escalation Vulnerabilities
CVE-2026-81192High· 7.0`OpenTelemetry.Resources.Host` NuGet package, which provides OpenTelemetry resource detectors for host, is affected by an untrusted search path vulnerability on macOS