CVE-2026-107315
Last modified
CVE-2026-107315 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.4 through 42.7.13 pads a value that is shorter than its declared length with bytes left in its send buffer instead of zeros, and the server stores those bytes as part of the value. The bytes are messages the driver sent earlier on the same connection: SQL text and parameter values of recent statements, which on a pooled connection can come from other requests. EPSS estimates a 0.12% chance of exploitation in the next 30 days.
Description
pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.4 through 42.7.13 pads a value that is shorter than its declared length with bytes left in its send buffer instead of zeros, and the server stores those bytes as part of the value. The bytes are messages the driver sent earlier on the same connection: SQL text and parameter values of recent statements, which on a pooled connection can come from other requests. Each padded value can carry up to 8192 bytes of this traffic, or 16320 bytes on a connection with GSS encryption. The padding happens when an application declares a length larger than the data it supplies, through PreparedStatement.setObject with a ByteStreamWriter, CopyIn.writeToCopy, PGCopyOutputStream.write, LargeObject.write, or Blob.setBytes. The driver accepts these calls without an error. An attacker who can make the application store such a value and read it back can collect earlier traffic. Applications whose declared lengths always match their data are not affected. Versions 42.7.3 and earlier pad with zeros.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| pgjdbc | pgjdbc | >= 42.7.4, <= 42.7.13 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-107315?
How severe is CVE-2026-107315?
How do I fix CVE-2026-107315?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-107286Pydantic AI is a Python agent framework for building applica…7.5
- CVE-2026-10729An HTML injection vulnerability in the notification email fo…1.2
- CVE-2026-1073The Purchase Button For Affiliate Link plugin for WordPress …4.3
- CVE-2026-10731SQL injection in the ‘two_steps_auth_code’ parameter process…9.3
- CVE-2026-107313pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.4 and 42.7…4.2
- CVE-2026-107314pgjdbc, the PostgreSQL JDBC Driver, versions 42.7.11 through…5.9
- CVE-2026-10732All versions of the package decompress are vulnerable to Arb…6.4
- CVE-2026-10733GitLab has remediated an issue in GitLab CE/EE affecting all…4.3
- CVE-2026-10734The Infility Global plugin for WordPress is vulnerable to St…7.2
- CVE-2026-10735Multiple Shapedsmart-post-show-pro WordPress plugin before 4…7.5
- CVE-2026-107352Missing authorization checks in Amazon Athena engine version…7.7
- CVE-2026-107353traverse (npm) versions 0.3.6 through 0.3.9, 0.4.0 through 0…6.5
Are you affected by CVE-2026-107315?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
