VulnSea

Pgpool Global Development Group has 7 CVEs on record. Disclosure cadence is accelerating: 7 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 7. The median CVSS is 7.3 (high). None have a confirmed exploitation report.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.3
Publish → KEV
—
Last 90 days
7 prev 0

Products

  • Pgpool-II 7
Follow Pgpool Global Development Group:RSS feedSave a search →Embed badge ↗
7
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

Pgpool Global Development Group vulnerabilities

CVEs affecting Pgpool Global Development Group, newest first. Open any entry for full detail, references, and exploit status.

7 CVEsRSS

CVE-2026-92873High· 7.3
today

Pgpool-II contains an incorrect implementation of an authentication algorithm, which may allow an unauthenticated attacker to promote an arbitrary watchdog node to the leader node.

Pgpool-II contains an incorrect implementation of an authentication algorithm, which may allow an unauthenticated attacker to promote an arbitrary watchdog node to the leader node.

▾ TwilightPgpool Global Development Group · Pgpool-IIvia NVD
CVE-2026-92868Medium· 6.5
today

An improper certificate validation vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to bypass client certificate authentication.

An improper certificate validation vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to bypass client certificate authentication.

▾ SunlitPgpool Global Development Group · Pgpool-IIvia NVD
CVE-2026-92867High· 8.8
today

An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an authenticated attacker to cause abnormal process termination or arbitrary code execution.

An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an authenticated attacker to cause abnormal process termination or arbitrary code execution.

▾ TwilightPgpool Global Development Group · Pgpool-IIvia NVD
CVE-2026-92870High· 7.5
today

A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination.

A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination.

▾ TwilightPgpool Global Development Group · Pgpool-IIvia NVD
CVE-2026-92869Medium· 6.5
today

An out-of-bounds write vulnerability exists in Pgpool-II, which may allow an authenticated attacker to cause abnormal process termination.

An out-of-bounds write vulnerability exists in Pgpool-II, which may allow an authenticated attacker to cause abnormal process termination.

▾ SunlitPgpool Global Development Group · Pgpool-IIvia NVD
CVE-2026-92871High· 7.5
today

A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal termination of the watchdog process.

A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal termination of the watchdog process.

▾ TwilightPgpool Global Development Group · Pgpool-IIvia NVD
CVE-2026-92872Medium· 4.3
today

Pgpool-II inserts sensitive information into log file, which may allow an authenticated attacker to obtain the cluster information.

Pgpool-II inserts sensitive information into log file, which may allow an authenticated attacker to obtain the cluster information.

▾ SunlitPgpool Global Development Group · Pgpool-IIvia NVD
Pgpool Global Development Group vulnerabilities (CVEs) · VulnSea