{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-14T23:16:57.324","vulnerabilities":[{"cve":{"id":"CVE-2025-31480","sourceIdentifier":"security-advisories@github.com","published":"2025-04-04T15:15:48.820","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"aiven-extras is a PostgreSQL extension. This is a privilege escalation vulnerability, allowing elevation to superuser inside PostgreSQL databases that use the aiven-extras package. The vulnerability leverages the format function not being schema-prefixed. Affected users should install 1.1.16 and ensure they run the latest version issuing ALTER EXTENSION aiven_extras UPDATE TO '1.1.16' after installing it. This needs to happen in each database aiven_extras has been installed in."},{"lang":"es","value":"aiven-extras es una extensión de PostgreSQL. Esta vulnerabilidad de escalada de privilegios permite la elevación a superusuario en bases de datos PostgreSQL que usan el paquete aiven-extras. Esta vulnerabilidad se aprovecha de que la función de formato no tiene prefijo de esquema. Los usuarios afectados deben instalar la versión 1.1.16 y asegurarse de ejecutar la última versión ejecutando ALTER EXTENSION aiven_extras UPDATE TO '1.1.16' después de instalarla. Esto debe suceder en cada base de datos donde se haya instalado aiven_extras."}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H","baseScore":9.1,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.3,"impactScore":6.0}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-426"}]}],"references":[{"url":"https://github.com/aiven/aiven-extras/commit/77b5f19a0c1d196bc741ff5c774f85fe7ca3063b","source":"security-advisories@github.com"},{"url":"https://github.com/aiven/aiven-extras/security/advisories/GHSA-33xh-jqgf-6627","source":"security-advisories@github.com"}]}}]}