postgres-protocol
Activity
- Latest release
- 3mo ago
- Total releases
- 29
- Cadence
- ~3 months
- Last 12 months
- 3
Details
- License
- MIT OR Apache-2.0
- First release
- Sep 22, 2016
| Version | Released | |
|---|---|---|
0.6.12
unknown
|
0.6.12
unknown
Dependencies (11)
+ 3 more |
|
0.6.11
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.11
unknown
Dependencies (11)
+ 3 more |
|
0.6.10
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.10
unknown
Dependencies (11)
+ 3 more |
|
0.6.9
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.9
unknown
Dependencies (11)
+ 3 more |
|
0.6.8
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.8
unknown
Dependencies (11)
+ 3 more |
|
0.6.7
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.7
unknown
Dependencies (11)
+ 3 more |
|
0.6.6
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.6
unknown
Dependencies (11)
+ 3 more |
|
0.6.5
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.5
unknown
Dependencies (10)
+ 2 more |
|
0.6.4
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.4
unknown
Dependencies (10)
+ 2 more |
|
0.6.3
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.3
unknown
Dependencies (10)
+ 2 more |
|
0.6.2
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.2
unknown
Dependencies (10)
+ 2 more |
|
0.6.1
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.1
unknown
Dependencies (10)
+ 2 more |
|
0.6.0
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.6.0
unknown
Dependencies (10)
+ 2 more |
|
0.5.3
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.5.3
unknown
Dependencies (10)
+ 2 more |
|
0.5.2
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.5.2
unknown
Dependencies (10)
+ 2 more |
|
0.5.1
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.5.1
unknown
Dependencies (10)
+ 2 more |
|
0.5.0
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.5.0
unknown
Dependencies (11)
+ 3 more |
|
0.5.0-alpha.2
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.5.0-alpha.2
unknown
Dependencies (11)
+ 3 more |
|
0.5.0-alpha.1
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.5.0-alpha.1
unknown
Dependencies (11)
+ 3 more |
|
0.4.1
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.4.1
unknown
Dependencies (11)
+ 3 more |
|
0.4.0
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.4.0
unknown
Dependencies (11)
+ 3 more |
|
0.3.2
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.3.2
unknown
Dependencies (11)
+ 3 more |
|
0.3.1
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.3.1
unknown
Dependencies (11)
+ 3 more |
|
0.3.0
unknown
2 CVEs
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev
GHSA-5x78-73v4-xg6w
RUSTSEC-2026-0179
Aug 24, 2026
postgres-protocol: Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service
High
Network
Low
None
None
A malicious, compromised, or man-in-the-middle server can supply an arbitrarily
large SCRAM-SHA-256 PBKDF2 iteration count during authentication. The client
runs it inline with no upper bound, pinning a Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.3.0
unknown
Dependencies (11)
+ 3 more |
|
0.2.2
unknown
1 CVE
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.2.2
unknown
Dependencies (4)
|
|
0.2.1
unknown
1 CVE
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.2.1
unknown
Dependencies (4)
|
|
0.2.0
unknown
1 CVE
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.2.0
unknown
Dependencies (5)
|
|
0.1.1
unknown
1 CVE
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.1.1
unknown
Dependencies (4)
|
|
0.1.0
unknown
1 CVE
GHSA-rgqc-3x5p-6gwg
RUSTSEC-2026-0180
Aug 24, 2026
postgres-protocol: Panic decoding a malformed `hstore` value allows denial of service
Medium
Network
Low
None
None
A malicious or compromised server can return a binary Applications that connect only to a trusted database are not exposed; the risk applies to clients that may connect to untrusted or user-supplied servers, or whose connection can be intercepted by a man-in-the-middle. Fixed in
0.6.12
References Updated Sep 10, 2026 · Source: OSV.dev |
0.1.0
unknown
Dependencies (4)
|