vulnerability

Ubuntu: USN-7530-1 (CVE-2025-46337): ADOdb vulnerability

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:P)
Published
May 1, 2025
Added
Jun 3, 2025
Modified
Aug 18, 2025

Description

ADOdb is a PHP database class library that provides abstractions for performing queries and managing databases. Prior to version 5.22.9, improper escaping of a query parameter may allow an attacker to execute arbitrary SQL statements when the code using ADOdb connects to a PostgreSQL database and calls pg_insert_id() with user-supplied data. This issue has been patched in version 5.22.9.

Solution

ubuntu-upgrade-libphp-adodb
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.