Lucene search

K

Ydb Security Vulnerabilities

cve
cve

CVE-2023-45825

ydb-go-sdk is a pure Go native and database/sql driver for the YDB platform. Since ydb-go-sdk v3.48.6 if you use a custom credentials object (implementation of interface Credentials it may leak into logs. This happens because this object could be serialized into an error message using...

5.5CVSS

5AI Score

0.0004EPSS

2023-10-19 07:15 PM
24
cve
cve

CVE-2022-28228

Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory locations or cause a...

9.1CVSS

8.7AI Score

0.002EPSS

2022-12-23 10:15 PM
30