ZeroHour

CVE-2025-9636

CVSS 3.1
7.9 high
EPSS
<1%p12
Published
()
Modified
Description

pgAdmin <= 9.7 is affected by a Cross-Origin Opener Policy (COOP) vulnerability. This vulnerability allows an attacker to manipulate the OAuth flow, potentially leading to unauthorised account access, account takeover, data breaches, and privilege escalation.

Vendors
pgadmin
Products
pgadmin 4
Weakness
CWE-346
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:L

In the news

No ingested article mentions this CVE yet.