HomePgadminCVE-2025-9636

CVE-2025-9636

HIGH
7.9CVSS
Published: 2025-09-04
Updated: 2025-09-11
AI Analysis

Description

pgAdmin <= 9.7 is affected by a Cross-Origin Opener Policy (COOP) vulnerability. This vulnerability allows an attacker to manipulate the OAuth flow, potentially leading to unauthorised account access, account takeover, data breaches, and privilege escalation.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:L
Attack Vector
network
Complexity
high
Privileges
low
User Action
required
Scope
changed
Confidentiality
high
Integrity
high
Availability
low
Weaknesses
CWE-346

Metadata

Primary Vendor
PGADMIN
Published
9/4/2025
Last Modified
9/11/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

pgadmin : pgadmin_4

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2025-9636 | HIGH Severity | CVEDatabase.com | CVEDatabase.com