Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/dalibo/postgresql_anonymizer

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to repeatedly call the anon.hash() function and collects (seed, hash_output) pairs to perform an offline brute-force attack and deduce the salt. The problem is resolved in PostgreSQL Anonymizer 3.1.2 and later versions

Join the discussion

PostgreSQL Anonymizer versions prior to 3.1.1 contain an SQL injection vulnerability that allows privilege escalation to superuser. The vulnerability occurs when a superuser calls import_database_rules() or import_roles_rules() with a crafted JSON document containing malicious code in a key-value pair. This code executes with superuser privileges. The issue is fixed in version 3.1.1 and later.

Join the discussion

CVE-2026-9617 is a SQL injection vulnerability in the DALIBO PostgreSQL Anonymizer that allows a user to escalate privileges to superuser by injecting malicious code into a column identifier when creating a table. Execution of this code occurs if a superuser calls the k-anonymity function. The risk is higher on PostgreSQL 14 or instances upgraded from that version, while PostgreSQL 15 and later reduce risk by revoking public schema creation permissions by default. The vulnerability is fixed in PostgreSQL Anonymizer version 3.1.0 and later.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Package: pkg:github/dalibo/postgresql_anonymizer
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses