Description
PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having USAGE privilege on the associated foreign server.
Remediation
References
Related Vulnerabilities
MySQL CVE-2019-2533 Vulnerability (CVE-2019-2533)
Drupal Improper Authentication Vulnerability (CVE-2010-3091)
Oracle JRE CVE-2022-21434 Vulnerability (CVE-2022-21434)
WordPress Plugin CiviCRM Multiple Cross-Site Scripting Vulnerabilities (5.35.0)
PostgreSQL Missing Authorization Vulnerability (CVE-2020-1720)