A vulnerability was found in PostgreSQL with the use of...
Moderate severity
Unreviewed
Published
Aug 11, 2023
to the GitHub Advisory Database
•
Updated Dec 6, 2024
Description
Published by the National Vulnerability Database
Aug 11, 2023
Published to the GitHub Advisory Database
Aug 11, 2023
Last updated
Dec 6, 2024
A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT. If UPDATE and SELECT policies forbid some rows that INSERT policies do not forbid, a user could store such rows.
References