CVE-2024-9014: Pgadmin 4
Medium severity, CVSS 6.5. EPSS: 9.7% chance of exploitation in the next 30 days.
pgAdmin versions 8.11 and earlier are vulnerable to a security flaw in OAuth2 authentication. This vulnerability allows an attacker to potentially obtain the client ID and secret, leading to unauthorized access to user data.
Affected products
- Pgadmin Pgadmin 4: before 8.12 (fixed in 8.12)
Published 2024-09-23. Last modified 2026-06-17.