{"schema_version":"1.7.5","id":"GO-2026-4771","published":"2026-04-07T14:58:41Z","modified":"2026-07-17T10:29:27.547954010Z","aliases":["CVE-2026-33815","GHSA-xgrm-4fwx-7qm8"],"related":["CGA-7v58-q3h2-qfr7","RHSA-2026:36796","RHSA-2026:41019"],"summary":"CVE-2026-33815 in github.com/jackc/pgx","details":"Memory-safety vulnerability in github.com/jackc/pgx/v5.","affected":[{"package":{"name":"github.com/jackc/pgx/v5","ecosystem":"Go","purl":"pkg:golang/github.com/jackc/pgx/v5"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"5.9.0"}]}],"ecosystem_specific":{"imports":[{"path":"github.com/jackc/pgx/v5/pgproto3","symbols":["Backend.Receive","Bind.Decode"]}]},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-4771.json"}}],"database_specific":{"review_status":"REVIEWED","url":"https://pkg.go.dev/vuln/GO-2026-4771"}}