FlawAtlas
Search the atlas
CVE-2024-44905 Moderate

CVE-2024-44905

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

Exploit probability 0.4%
Published June 12, 2025
Required by Not available
Last source change August 12, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

5 explicit affected versions

Go github.com/go-pg/pg
Go github.com/go-pg/pg/v10
Go github.com/go-pg/pg/v9
Go github.com/go-pg/pg/v10
Go github.com/go-pg/pg/v9
Go github.com/go-pg/pg

03 / CONNECTIONS

Connected vulnerabilities

related OPENSUSE-SU-2026:21483-1

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2024-44905

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

View original source
Open Source Vulnerabilities GO-2025-3764

SQL injection vulnerability via the component /types/append_value.go in github.com/go-pg/pg

View original source
Open Source Vulnerabilities GHSA-6xp3-p59p-q4fj

go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.

View original source

05 / REFERENCES

Further evidence