10 Total advisories
10 Vulnerabilities
0 Malware
Dependency scanning
Check whether github.com/jackc/pgx/v5 is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
UNKNOWN
CVE-2026-41889
pgx: SQL Injection via placeholder confusion with dollar quoted string literals
CRITICAL 9.8
CVE-2026-33815
pgx contains memory-safety vulnerability
CRITICAL 9.8
CVE-2026-33816
Memory-safety vulnerability in github.com/jackc/pgx/v5.
CRITICAL 9.8
CVE-2024-27304
pgx SQL Injection via Protocol Message Size Overflow
UNKNOWN
CVE-2026-33816
CVE-2026-33816 in github.com/jackc/pgx
UNKNOWN
CVE-2026-33815
CVE-2026-33815 in github.com/jackc/pgx
UNKNOWN
CVE-2026-41889
SQL Injection via placeholder confusion with dollar quoted string literals in github.com/jackc/pgx
MEDIUM 5.3
GO-2024-2567
Panic in Pipeline when PgConn is busy or closed in github.com/jackc/pgx
UNKNOWN
CVE-2024-27304
SQL injection in github.com/jackc/pgproto3 and github.com/jackc/pgx
UNKNOWN
GHSA-fqpg-rq76-99pq
Panic in Pipeline when PgConn is busy or closed in github.com/jackc/pgx
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes