cb
cvebase
.
~
/
products
/
magic
/
asyncpg
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
magic
/
Magic Asyncpg
Magic Asyncpg vulnerabilities
1 known vulnerability affecting
magic/asyncpg
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2020-17446
P3
CRITICAL
CVSS 9.8
fixed in 0.21.0
2020-08-12
CVE-2020-17446 [CRITICAL] CWE-824 CVE-2020-17446: asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary c asyncpg before 0.21.0 allows a malicious PostgreSQL server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, because of access to an uninitialized pointer in the array data decoder.
ghsa
nvd
osv
Magic Asyncpg vulnerabilities | cvebase