Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54680 | uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go. The maintainer has stated that the issue is fixed in v1.2.15. |
Github GHSA |
GHSA-h4h6-vccr-44h2 | uptrace pgdriver SQL injection vulnerability |
Wed, 13 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go. | uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go. The maintainer has stated that the issue is fixed in v1.2.15. |
| References |
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 02 Jul 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Uptrace
Uptrace pgdriver |
|
| CPEs | cpe:2.3:a:uptrace:pgdriver:1.2.1:*:*:*:*:go:*:* | |
| Vendors & Products |
Uptrace
Uptrace pgdriver |
Tue, 17 Jun 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Thu, 12 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go. | |
| References |
|
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-13T13:57:44.450Z
Reserved: 2024-08-21T00:00:00.000Z
Link: CVE-2024-44906
Updated: 2025-06-12T15:57:25.805Z
Status : Modified
Published: 2025-06-12T16:15:22.140
Modified: 2025-08-13T14:15:30.510
Link: CVE-2024-44906
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA