Greenplum is a data-warehouse and analytics platform that presents a narrow but strategically positioned product footprint in enterprise database infrastructure. The observed vulnerability profile centers on path-traversal conditions and improper information handling in logs, reflecting input-validation and operational-security patterns in large-scale data systems. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Greenplum over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-22028CRITICAL In versions of Greenplum database prior to 5.28.6 and 6.14.0, greenplum database contains a file path traversal vulnerability leading to information disclosure from the file system | Nov 19, 2021 | 9.1 | 29 | NO | NO |
CVE-2021-22030MEDIUM In versions of Greenplum database prior to 5.28.14 and 6.17.0, certain statements execution led to the storage of sensitive(credential) information in the logs of the database. A m | Nov 19, 2021 | 6.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Greenplum.
Media articles that mention a CVE ID that affects a product developed by Greenplum — matched by CVE ID, not by vendor name.