EnterpriseDB Corporation
Self-Reporting Analysis
Of all the CVEs published by EnterpriseDB Corporation as a CNA, 50.0% affect products that EnterpriseDB Corporation develops as a vendor.
Of all the CVEs published that affect products developed by EnterpriseDB Corporation, 16.7% are self-published by EnterpriseDB Corporation as a CNA.
Trends Over Time
The number and severity of CVEs published by EnterpriseDB Corporation over time
Top CVEs
All CVEs published by EnterpriseDB Corporation as a CNA, regardless of affected vendor or product.
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-14038HIGH EDB Hybrid Manager contains a flaw that allows an unauthenticated attacker to directly access certain gRPC endpoints. This could allow an attacker to read potentially sensitive dat | Dec 15, 2025 | 7.0 | 23 | NO | NO |
CVE-2024-4545HIGH
All versions of EnterpriseDB Postgres Advanced Server (EPAS) from 15.0 prior to 15.7.0 and from 16.0 prior to 16.3.0 may allow users using edbldr to bypass role permissions from p | May 14, 2024 | 7.7 | 21 | NO | NO |
CVE-2025-2506MEDIUM When pglogical attempts to replicate data, it does not verify it is using a replication connection, which means a user with CONNECT access to a database configured for replication | May 22, 2025 | 5.3 | 19 | NO | NO |
CVE-2026-0949MEDIUM PEM versions prior to 9.8.1 are affected by a stored Cross-site Scripting (XSS) vulnerability that allows users with access to the Manage Charts menu to inject arbitrary JavaScript | Jan 16, 2026 | 4.8 | 18 | NO | NO |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this cna scope (4 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID published by EnterpriseDB Corporation as a CNA.
Media Mentions
Media articles that mention a CVE ID published by EnterpriseDB Corporation as a CNA — matched by CVE ID, not by organization name.