Executive brief
pgjdbc Client Allows Fallback to Insecure Authentication Despite channelBinding=require Configuration
Affected products
- Maven org.postgresql:postgresql
Junglewise Threat Intelligence
CVE-2025-49146 · Severity: low · CVSS 3.1 · Published 2025-06-11
Vendors: Maven.
pgjdbc Client Allows Fallback to Insecure Authentication Despite channelBinding=require Configuration