{"format": 1, "mode": "release", "from_release": null, "to_release": {"date": "2026-02-26", "build": "18.3", "major": "18", "minor": 3, "manual": "18", "status": "stable", "doc_git": "", "version": "18.3", "eol_date": "2030-11-14", "date_text": "2026-02-26", "supported": true, "manual_url": "/docs/18/release-18-3.html", "source_url": "/docs/release/18.3/", "entry_count": 9, "placeholder": false, "content_hash": "26fab0d6829ffbf0c274735819900fd9d9413fb32e036f8bcb822d37ac613761", "manual_build": "18.6", "source_as_of": "", "changes_count": 9, "doc_loaded_at": "2026-09-26T02:56:34.731814", "migration_html": "<p>对于运行 18.X 的用户，不需要执行导出/恢复。</p>\n<p>但是，如果你从早于 18.2 的版本升级，请参见<a href=\"/docs/18/release-18-2.html\" title=\"E.4. 发布版本 18.2\">第 E.4 节</a>。</p>", "compatibility_count": 0, "label": "18.3", "status_label": "受支持版本", "eol": "2030-11-14", "age_days": 212, "support_days": 1510}, "groups": [{"date": "2026-02-26", "build": "18.3", "major": "18", "minor": 3, "manual": "18", "status": "stable", "doc_git": "", "version": "18.3", "eol_date": "2030-11-14", "date_text": "2026-02-26", "supported": true, "manual_url": "/docs/18/release-18-3.html", "source_url": "/docs/release/18.3/", "entry_count": 9, "placeholder": false, "content_hash": "26fab0d6829ffbf0c274735819900fd9d9413fb32e036f8bcb822d37ac613761", "manual_build": "18.6", "source_as_of": "", "changes_count": 9, "doc_loaded_at": "2026-09-26T02:56:34.731814", "migration_html": "<p>对于运行 18.X 的用户，不需要执行导出/恢复。</p>\n<p>但是，如果你从早于 18.2 的版本升级，请参见<a href=\"/docs/18/release-18-2.html\" title=\"E.4. 发布版本 18.2\">第 E.4 节</a>。</p>", "compatibility_count": 0, "label": "18.3", "status_label": "受支持版本", "eol": "2030-11-14", "age_days": 212, "support_days": 1510, "entries": [{"id": "18.3-ad611cd1e209983f", "cves": [], "html": "<p>修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题（Heikki Linnakangas）<a href=\"https://postgr.es/c/817f74600\">§</a></p>\n<p>为兼容旧版本处理多事务 ID 回卷方式而编写的错误逻辑，会导致重放失败，并出现诸如 <span>“<span>could not access status of transaction</span>”</span> 之类的消息。一种典型场景是：最新小版本的备库正在消费来自较旧版本主库的 WAL。</p>", "text": "修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题（Heikki Linnakangas）§ 为兼容旧版本处理多事务 ID 回卷方式而编写的错误逻辑，会导致重放失败，并出现诸如 “could not access status of transaction” 之类的消息。一种典型场景是：最新小版本的备库正在消费来自较旧版本主库的 WAL。", "title": "修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题", "commits": ["817f74600"], "section": "变更", "category": "bugfix", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "103f7a064258041866386b1c934b5dc1e6ae4ca6f921231e67b0cb23889c5b2d", "section_path": ["变更"], "commit_groups": [["23064542f", "4a36c89f1", "547a8aaa7", "817f74600", "899de38d8"]], "identity_text": "Fix failure after replaying a multixid truncation record from WAL that was generated by an older minor version (Heikki Linnakangas) Erroneous logic for coping with the way that previous versions handled multixid wraparound led to replay failure, with messages like could not access status of transaction. A typical scenario in which this could occur is a standby server of the latest minor version consuming WAL from a primary server of an older version.", "commit_aliases": ["23064542f", "4a36c89f1", "547a8aaa7", "817f74600", "899de38d8"], "source_commits": ["817f74600"], "source_entry_id": "18.3/changes/001", "db_id": "6d7df9238b789e2555fe1290d455a61a", "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d", "relations": [{"rule": 2, "type": "equivalent", "target": "269e20cac41b248d80f469e35fb3be04", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}}, {"rule": 2, "type": "equivalent", "target": "54acee06ad9ee6f00cba048e48dfdadc", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}}, {"rule": 2, "type": "equivalent", "target": "ac9d069b97f39c99f4c9540523c6dd01", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}}, {"rule": 2, "type": "equivalent", "target": "bb4c9dfad3173d99906963ab569e5990", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}}], "version": "18.3", "category_label": "BUG 修复", "also_in": [], "variants": [], "related_changes": [{"db_id": "269e20cac41b248d80f469e35fb3be04", "kind": "equivalent", "version": "17.9", "label": "17.9", "title": "修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}, "url": "/docs/compare/?release=17.9#17.9-80ecbcad5117683e", "source_url": "/docs/release/17.9/#RELEASE-17-9-CHANGES"}, {"db_id": "54acee06ad9ee6f00cba048e48dfdadc", "kind": "equivalent", "version": "16.13", "label": "16.13", "title": "修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}, "url": "/docs/compare/?release=16.13#16.13-2ec40dc78a340503", "source_url": "/docs/release/16.13/#RELEASE-16-13-CHANGES"}, {"db_id": "ac9d069b97f39c99f4c9540523c6dd01", "kind": "equivalent", "version": "15.17", "label": "15.17", "title": "修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}, "url": "/docs/compare/?release=15.17#15.17-b825392cb651a3f2", "source_url": "/docs/release/15.17/#ZH-AUTO-RELEASE-15-SECT2-2"}, {"db_id": "bb4c9dfad3173d99906963ab569e5990", "kind": "equivalent", "version": "14.22", "label": "14.22", "title": "修复在重放由较旧小版本生成的 WAL 多事务 ID 截断记录后发生失败的问题", "evidence": {"same_day": true, "patch_ids": ["e8c592597fe0c522a838714ea94d192e"], "statement_hash": "cf611d327c6efbb05b8c3c3eec25baadc4b81f3015eda12031c5dfd70647d75d"}, "url": "/docs/compare/?release=14.22#14.22-b825392cb651a3f2", "source_url": "/docs/release/14.22/#ZH-AUTO-RELEASE-14-SECT2-2"}]}, {"id": "18.3-77113f5b52409590", "cves": ["CVE-2026-2006"], "html": "<p>避免在对<span>“<span>经过 TOAST 处理</span>”</span>的数据应用 <code>substring()</code> 时误报无效编码（Noah Misch）<a href=\"https://postgr.es/c/6e045e1a6\">§</a> <a href=\"https://postgr.es/c/d04b34d68\">§</a> <a href=\"https://postgr.es/c/4174e41b9\">§</a></p>\n<p>针对 CVE-2026-2006 的修复过于激进，在原本合法的情况下也可能报出字符不完整错误。</p>", "text": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码（Noah Misch）§ § § 针对 CVE-2026-2006 的修复过于激进，在原本合法的情况下也可能报出字符不完整错误。", "title": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码", "commits": ["4174e41b9", "6e045e1a6", "d04b34d68"], "section": "变更", "category": "security", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "385042f170395ab48ac62db0063a8cbfa5ec36f5acc462be6ce28d90a0d3e02c", "section_path": ["变更"], "commit_groups": [["14b1fd617", "5d5232bc3", "6e045e1a6", "9f4fd119b", "a20eb248c", "bdfb37228"], ["2280ab354", "50d361f62", "8cef93d8a", "a0769e74d", "d04b34d68", "ec86152e0"], ["4174e41b9", "44fc85bbf", "45eb47230", "4644f8b23", "5b305ebcc", "8e73530f1"]], "identity_text": "Avoid incorrect complaint of invalid encoding when substring() is applied to toasted data (Noah Misch) The fix for CVE-2026-2006 was too aggressive and could raise an error about an incomplete character in cases that are actually valid.", "commit_aliases": ["14b1fd617", "2280ab354", "4174e41b9", "44fc85bbf", "45eb47230", "4644f8b23", "50d361f62", "5b305ebcc", "5d5232bc3", "6e045e1a6", "8cef93d8a", "8e73530f1", "9f4fd119b", "a0769e74d", "a20eb248c", "bdfb37228", "d04b34d68", "ec86152e0"], "source_commits": ["4174e41b9", "6e045e1a6", "d04b34d68"], "source_entry_id": "18.3/changes/002", "db_id": "9b63cad6030353d772f1330dfd687e9f", "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747", "relations": [{"rule": 2, "type": "equivalent", "target": "2913b28e99dd666bc31951814a799735", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}}, {"rule": 2, "type": "equivalent", "target": "91516991913d971894a1428891e4772e", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}}, {"rule": 2, "type": "equivalent", "target": "da9fc04e8b825c72955bd70be9fd53ee", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}}, {"rule": 2, "type": "equivalent", "target": "fe28a154c085da9085a635db8d9d4460", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}}], "version": "18.3", "category_label": "安全相关", "also_in": [], "variants": [], "related_changes": [{"db_id": "91516991913d971894a1428891e4772e", "kind": "equivalent", "version": "17.9", "label": "17.9", "title": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}, "url": "/docs/compare/?release=17.9#17.9-24d7e69f6ec0ae9a", "source_url": "/docs/release/17.9/#RELEASE-17-9-CHANGES"}, {"db_id": "fe28a154c085da9085a635db8d9d4460", "kind": "equivalent", "version": "16.13", "label": "16.13", "title": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}, "url": "/docs/compare/?release=16.13#16.13-46657f359d7a6c06", "source_url": "/docs/release/16.13/#RELEASE-16-13-CHANGES"}, {"db_id": "2913b28e99dd666bc31951814a799735", "kind": "equivalent", "version": "15.17", "label": "15.17", "title": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}, "url": "/docs/compare/?release=15.17#15.17-ed7a109835c41923", "source_url": "/docs/release/15.17/#ZH-AUTO-RELEASE-15-SECT2-2"}, {"db_id": "da9fc04e8b825c72955bd70be9fd53ee", "kind": "equivalent", "version": "14.22", "label": "14.22", "title": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码", "evidence": {"same_day": true, "patch_ids": ["924bc2a7b62c922890c6948fec9b1504", "b621552d0483c3fe9118c60e77f297ab", "fe6380c6909ab3efff6be8983b7f18a1"], "statement_hash": "b34aae4222592f29a7ecee54df249e73bebb9346d81b2e5c859347ba8c1ea747"}, "url": "/docs/compare/?release=14.22#14.22-0e619c964c972dcb", "source_url": "/docs/release/14.22/#ZH-AUTO-RELEASE-14-SECT2-2"}]}, {"id": "18.3-760673c96f02dc6a", "cves": ["CVE-2026-2007"], "html": "<p>修复针对 CVE-2026-2007 的修复中遗漏的问题（Zsolt Parragi）<a href=\"https://postgr.es/c/041e02e6a\">§</a></p>\n<p>如果因为输入包含的三字符组比初始估计更多而需要扩展 <span>“<span>bounds</span>”</span> 数组，<code>generate_trgm_only</code> 没有把修改后的数组指针返回给调用者。这会导致 <code>strict_word_similarity()</code> 及相关函数输出错误，极少数情况下还会崩溃。如果输入字符串在转换为小写后变长，就会触发这段错误代码。目前已知仅会在某些单字节编码配合 ICU 区域设置时发生这种情况。</p>", "text": "修复针对 CVE-2026-2007 的修复中遗漏的问题（Zsolt Parragi）§ 如果因为输入包含的三字符组比初始估计更多而需要扩展 “bounds” 数组，generate_trgm_only 没有把修改后的数组指针返回给调用者。这会导致 strict_word_similarity() 及相关函数输出错误，极少数情况下还会崩溃。如果输入字符串在转换为小写后变长，就会触发这段错误代码。目前已知仅会在某些单字节编码配合 ICU 区域设置时发生这种情况。", "title": "修复针对 CVE-2026-2007 的修复中遗漏的问题", "commits": ["041e02e6a"], "section": "变更", "category": "security", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "b353c8f16f7cf05d4c8ce29c2e27cb990261f851a19bb5942a3636d3c0e0eb06", "section_path": ["变更"], "commit_groups": [["041e02e6a", "18bcdb75d"]], "identity_text": "Fix oversight in the fix for CVE-2026-2007 (Zsolt Parragi) If the bounds array needed to be expanded, because the input contained more trigrams than the initial guess, generate_trgm_only didn't return the modified array pointer to its caller. That would lead to incorrect output from strict_word_similarity() and related functions, or in rare cases a crash. The faulty code is reached if the input string becomes longer when it's converted to lower case. The only known instances of that occur when an ICU locale is used with certain single-byte encodings.", "commit_aliases": ["041e02e6a", "18bcdb75d"], "source_commits": ["041e02e6a"], "source_entry_id": "18.3/changes/003", "db_id": "bba76daa4b2c3aa3dad7cb3348361627", "patch_ids": ["5746d160c61038943aab7567edcfacd5"], "statement_hash": "aeb227836e4937f484397599f9cfd2ab0c9663370769305feeb631f1ea2c1bbf", "relations": [], "version": "18.3", "category_label": "安全相关", "also_in": [], "variants": [], "related_changes": []}, {"id": "18.3-2fc407c7b5f1163b", "cves": [], "html": "<p>修复 <code>json_strip_nulls()</code> 和 <code>jsonb_strip_nulls()</code> 的波动性标记（Andrew Dunstan）<a href=\"https://postgr.es/c/2f6ee7b38\">§</a></p>\n<p>这些函数一直被视为不可变，但在版本 18 的重构中却意外被标记为稳定。这会阻止它们被用于索引表达式，并可能导致查询中不必要的重复求值。该修复会纠正在新初始化的数据库集簇中的标记（包括通过 <span>pg_upgrade</span> 升级到 18.3 或更高版本的集簇）。但是，它无法帮助使用 18.0 到 18.2 创建的现有集簇。</p>\n<p>如果这一错误影响到了你对这些函数的使用，建议对现有集簇执行手工目录更新。以超级用户身份在每个受影响的数据库中执行：</p>\n<pre>UPDATE pg_catalog.pg_proc SET provolatile = 'i' WHERE oid IN ('3261','3262');\n</pre>\n<p>同时也要更新 <code>template0</code> 和 <code>template1</code>，这样将来新建的数据库也会带有该修复。</p>", "text": "修复 json_strip_nulls() 和 jsonb_strip_nulls() 的波动性标记（Andrew Dunstan）§ 这些函数一直被视为不可变，但在版本 18 的重构中却意外被标记为稳定。这会阻止它们被用于索引表达式，并可能导致查询中不必要的重复求值。该修复会纠正在新初始化的数据库集簇中的标记（包括通过 pg_upgrade 升级到 18.3 或更高版本的集簇）。但是，它无法帮助使用 18.0 到 18.2 创建的现有集簇。 如果这一错误影响到了你对这些函数的使用，建议对现有集簇执行手工目录更新。以超级用户身份在每个受影响的数据库中执行： UPDATE pg_catalog.pg_proc SET provolatile = 'i' WHERE oid IN ('3261','3262'); 同时也要更新 template0 和 template1，这样将来新建的数据库也会带有该修复。", "title": "修复 json_strip_nulls() 和 jsonb_strip_nulls() 的波动性标记", "commits": ["2f6ee7b38"], "section": "变更", "category": "bugfix", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "69cd62e964905e515097310ffca11c4981f7e1a31ce586fae8c7446405c7e7fd", "section_path": ["变更"], "commit_groups": [["2f6ee7b38"], ["759b03b24"]], "identity_text": "Fix the volatility marking of json_strip_nulls() and jsonb_strip_nulls() (Andrew Dunstan) These functions have always been considered immutable, but refactoring in version 18 accidentally marked them stable instead. That prevents their use in index expressions and could cause unnecessary repeat evaluations in queries. This fix corrects the marking in newly-initialized database clusters (including clusters that are pg_upgrade'd to 18.3 or later). However it will not help existing clusters made using 18.0 through 18.2. If this mistake affects your usage of these functions, the recommended fix for an existing cluster is a manual catalog update. As superuser, perform UPDATE pg_catalog.pg_proc SET provolatile = 'i' WHERE oid IN ('3261','3262'); in each affected database. Update template0 and template1 as well, so that databases made in future will have the fix.", "commit_aliases": ["2f6ee7b38", "759b03b24"], "source_commits": ["2f6ee7b38", "759b03b24"], "source_entry_id": "18.3/changes/004", "db_id": "b0676672ef3eccce4bfc53495f6c6dc3", "patch_ids": ["3a0025921520001b45028dce4cf6545c", "3c779614e5f31760b4d0ff66997fdc12"], "statement_hash": "ea52638885fce4815a12bef2616101dc58e758e28f6544ac1d5ed498078d7721", "relations": [], "version": "18.3", "category_label": "BUG 修复", "also_in": [], "variants": [], "related_changes": []}, {"id": "18.3-cd0444df0515373f", "cves": [], "html": "<p>修复对 <code>LATERAL UNION ALL</code> 子查询输出可能将其置空的外连接集合的计算（Richard Guo）<a href=\"https://postgr.es/c/ed57c207c\">§</a></p>\n<p>这一错误可能导致系统误以为某些 <code>NOT NULL</code> 测试没有必要，从而跳过这些测试，最终产生错误的查询结果。</p>", "text": "修复对 LATERAL UNION ALL 子查询输出可能将其置空的外连接集合的计算（Richard Guo）§ 这一错误可能导致系统误以为某些 NOT NULL 测试没有必要，从而跳过这些测试，最终产生错误的查询结果。", "title": "修复对 LATERAL UNION ALL 子查询输出可能将其置空的外连接集合的计算", "commits": ["ed57c207c"], "section": "变更", "category": "bugfix", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "302cb4fe2adf6432d8f08ed99bb29e82b7882f2d697a8f894356bbe18a9632f6", "section_path": ["变更"], "commit_groups": [["691977d37", "bcaf1b510", "ec20a4552", "ed57c207c"]], "identity_text": "Fix computation of the set of potentially-nulling outer joins for the output of a LATERAL UNION ALL subquery (Richard Guo) This error could lead to skipping NOT NULL tests in the mistaken belief that they were unnecessary, resulting in wrong query output.", "commit_aliases": ["691977d37", "bcaf1b510", "ec20a4552", "ed57c207c"], "source_commits": ["ed57c207c"], "source_entry_id": "18.3/changes/005", "db_id": "18fdbd910c49cc504248c6225d989414", "patch_ids": ["39b9ce1d361dcaf187c274f11f3f2877"], "statement_hash": "ba69358a1b83d31e612c77f1471616df5093300bce97f33f1049bcfb8058f683", "relations": [{"rule": 2, "type": "equivalent", "target": "b67986c165e36a1a03e1f26aa1714455", "evidence": {"same_day": true, "patch_ids": ["39b9ce1d361dcaf187c274f11f3f2877"], "statement_hash": "ba69358a1b83d31e612c77f1471616df5093300bce97f33f1049bcfb8058f683"}}, {"rule": 2, "type": "equivalent", "target": "b8d8d19411ef9eb6905835bde4b0a556", "evidence": {"same_day": true, "patch_ids": ["39b9ce1d361dcaf187c274f11f3f2877"], "statement_hash": "ba69358a1b83d31e612c77f1471616df5093300bce97f33f1049bcfb8058f683"}}], "version": "18.3", "category_label": "BUG 修复", "also_in": [], "variants": [], "related_changes": [{"db_id": "b67986c165e36a1a03e1f26aa1714455", "kind": "equivalent", "version": "17.9", "label": "17.9", "title": "修复对 LATERAL UNION ALL 子查询输出可能将其置空的外连接集合的计算", "evidence": {"same_day": true, "patch_ids": ["39b9ce1d361dcaf187c274f11f3f2877"], "statement_hash": "ba69358a1b83d31e612c77f1471616df5093300bce97f33f1049bcfb8058f683"}, "url": "/docs/compare/?release=17.9#17.9-1441e21296f1914d", "source_url": "/docs/release/17.9/#RELEASE-17-9-CHANGES"}, {"db_id": "b8d8d19411ef9eb6905835bde4b0a556", "kind": "equivalent", "version": "16.13", "label": "16.13", "title": "修复对 LATERAL UNION ALL 子查询输出可能将其置空的外连接集合的计算", "evidence": {"same_day": true, "patch_ids": ["39b9ce1d361dcaf187c274f11f3f2877"], "statement_hash": "ba69358a1b83d31e612c77f1471616df5093300bce97f33f1049bcfb8058f683"}, "url": "/docs/compare/?release=16.13#16.13-8d356903eb4a95b4", "source_url": "/docs/release/16.13/#RELEASE-16-13-CHANGES"}]}, {"id": "18.3-0f7d74b3efc6c659", "cves": [], "html": "<p>避免用户自定义约束与自动命名的 <code>NOT NULL</code> 约束发生名称冲突（Laurenz Albe）<a href=\"https://postgr.es/c/8d9a97e0b\">§</a></p>\n<p>从版本 18 开始，<code>NOT NULL</code> 约束拥有完整的 <code>pg_constraint</code> 条目，因此需要名字。对未命名 <code>NOT NULL</code> 约束选择名称的逻辑，未能避免与同一 <code>CREATE TABLE</code> 语句中用户编写的其他约束发生冲突。</p>", "text": "避免用户自定义约束与自动命名的 NOT NULL 约束发生名称冲突（Laurenz Albe）§ 从版本 18 开始，NOT NULL 约束拥有完整的 pg_constraint 条目，因此需要名字。对未命名 NOT NULL 约束选择名称的逻辑，未能避免与同一 CREATE TABLE 语句中用户编写的其他约束发生冲突。", "title": "避免用户自定义约束与自动命名的 NOT NULL 约束发生名称冲突", "commits": ["8d9a97e0b"], "section": "变更", "category": "improvement", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "39458dc6a2571ebb70095b8c7716b51af2fe99d225b57860fddba4da475bde38", "section_path": ["变更"], "commit_groups": [["0eeffd31b", "8d9a97e0b"]], "identity_text": "Avoid name collisions between user-written constraints and automatically-named NOT NULL constraints (Laurenz Albe) As of version 18, NOT NULL constraints have full-fledged pg_constraint entries, and therefore require names. The logic for choosing a name for an unnamed NOT NULL constraint failed to avoid conflicts with user-written constraints elsewhere in the same CREATE TABLE statement.", "commit_aliases": ["0eeffd31b", "8d9a97e0b"], "source_commits": ["8d9a97e0b"], "source_entry_id": "18.3/changes/006", "db_id": "d4784548a1f32ea6f8bd918343dcdb09", "patch_ids": ["c17004a9d75adab1b627cac20c7716b1"], "statement_hash": "fd81cebb242019e1085e6af82a15875472cff42d16d84f62d9fa32656c8c4aca", "relations": [], "version": "18.3", "category_label": "其他改进", "also_in": [], "variants": [], "related_changes": []}, {"id": "18.3-a63ceb8e607a4b1d", "cves": [], "html": "<p>修复 <code>pg_stat_get_backend_wait_event()</code> 和 <code>pg_stat_get_backend_wait_event_type()</code>，使其能够为辅助进程返回值（Heikki Linnakangas）<a href=\"https://postgr.es/c/53463b4b2\">§</a></p>\n<p>此前，这些函数对辅助进程返回 NULL，但这与 <code>pg_stat_activity</code> 视图的行为不一致。</p>", "text": "修复 pg_stat_get_backend_wait_event() 和 pg_stat_get_backend_wait_event_type()，使其能够为辅助进程返回值（Heikki Linnakangas）§ 此前，这些函数对辅助进程返回 NULL，但这与 pg_stat_activity 视图的行为不一致。", "title": "修复 pg_stat_get_backend_wait_event() 和 pg_stat_get_backend_wait_event_type()，使其能够为辅助进程返回值", "commits": ["53463b4b2"], "section": "变更", "category": "bugfix", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "91a5c560e1bbd5f686e75fe66a5b3021d7fc701042d51efc04e223bf814b2b9a", "section_path": ["变更"], "commit_groups": [["2332911ae", "53463b4b2", "78a5e3074", "82b495cdd", "842473337", "ebc53ca7b"]], "identity_text": "Fix pg_stat_get_backend_wait_event() and pg_stat_get_backend_wait_event_type() to report values for auxiliary processes (Heikki Linnakangas) Previously these functions returned NULL for auxiliary processes, but that's inconsistent with the pg_stat_activity view.", "commit_aliases": ["2332911ae", "53463b4b2", "78a5e3074", "82b495cdd", "842473337", "ebc53ca7b"], "source_commits": ["53463b4b2"], "source_entry_id": "18.3/changes/007", "db_id": "51c535e1e5383ba40f60f95b951f7542", "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90", "relations": [{"rule": 2, "type": "equivalent", "target": "0fa32f0f7fbb9d8c7a7a1cfeaa993230", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}}, {"rule": 2, "type": "equivalent", "target": "b1227a7b977e0fdde28e2260fd4055ca", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}}, {"rule": 2, "type": "equivalent", "target": "ca6d569bfd12f83cd8b663f7b1b14c38", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}}, {"rule": 2, "type": "equivalent", "target": "d389f553498aab12a33e8658e42c2ebd", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}}], "version": "18.3", "category_label": "BUG 修复", "also_in": [], "variants": [], "related_changes": [{"db_id": "ca6d569bfd12f83cd8b663f7b1b14c38", "kind": "equivalent", "version": "17.9", "label": "17.9", "title": "修复 pg_stat_get_backend_wait_event() 和 pg_stat_get_backend_wait_event_type()，使其能够为辅助进程返回值", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}, "url": "/docs/compare/?release=17.9#17.9-49611ef76ca99838", "source_url": "/docs/release/17.9/#RELEASE-17-9-CHANGES"}, {"db_id": "0fa32f0f7fbb9d8c7a7a1cfeaa993230", "kind": "equivalent", "version": "16.13", "label": "16.13", "title": "修复 pg_stat_get_backend_wait_event() 和 pg_stat_get_backend_wait_event_type()，使其能够为辅助进程返回值", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}, "url": "/docs/compare/?release=16.13#16.13-ba7ab6fc9d199173", "source_url": "/docs/release/16.13/#RELEASE-16-13-CHANGES"}, {"db_id": "d389f553498aab12a33e8658e42c2ebd", "kind": "equivalent", "version": "15.17", "label": "15.17", "title": "修复 pg_stat_get_backend_wait_event() 和 pg_stat_get_backend_wait_event_type()，使其能够为辅助进程返回值", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}, "url": "/docs/compare/?release=15.17#15.17-004af2947054d2ea", "source_url": "/docs/release/15.17/#ZH-AUTO-RELEASE-15-SECT2-2"}, {"db_id": "b1227a7b977e0fdde28e2260fd4055ca", "kind": "equivalent", "version": "14.22", "label": "14.22", "title": "修复 pg_stat_get_backend_wait_event() 和 pg_stat_get_backend_wait_event_type()，使其能够为辅助进程返回值", "evidence": {"same_day": true, "patch_ids": ["54586dcff5ba8f38c9bad3069e4ffc52"], "statement_hash": "f5b50524b8ec05ef6a3e7bcc10dc01af6ebe577734eff3be2cb39b4262840b90"}, "url": "/docs/compare/?release=14.22#14.22-380d81041c2b7b37", "source_url": "/docs/release/14.22/#ZH-AUTO-RELEASE-14-SECT2-2"}]}, {"id": "18.3-68534f113dfbb27d", "cves": [], "html": "<p>修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题（Tom Lane）<a href=\"https://postgr.es/c/ce4b7e3a1\">§</a></p>\n<p>如果该变量的值为 NULL，则会出现 <span>“<span>cache lookup failed for type 0</span>”</span> 错误。</p>", "text": "修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题（Tom Lane）§ 如果该变量的值为 NULL，则会出现 “cache lookup failed for type 0” 错误。", "title": "修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题", "commits": ["ce4b7e3a1"], "section": "变更", "category": "bugfix", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "fbea03cca43c2b95870d7024da9123755c4689d0eebbc20fd8aab766b4475f49", "section_path": ["变更"], "commit_groups": [["254b15cbf", "2b93d3820", "9863c9075", "c66f4cff1", "ce4b7e3a1", "dfd850980"]], "identity_text": "Fix casting a composite-type variable to a domain type when returning its value from a PL/pgSQL function (Tom Lane) If the variable's value is NULL, a cache lookup failed for type 0 error resulted.", "commit_aliases": ["254b15cbf", "2b93d3820", "9863c9075", "c66f4cff1", "ce4b7e3a1", "dfd850980"], "source_commits": ["ce4b7e3a1"], "source_entry_id": "18.3/changes/008", "db_id": "d7289871637eb477a52d704b8b129dee", "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5", "relations": [{"rule": 2, "type": "equivalent", "target": "08e9766e078b0f98d664963d7351568a", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}}, {"rule": 2, "type": "equivalent", "target": "1f6375c5be0406ebaeab1ddd1281f48a", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}}, {"rule": 2, "type": "equivalent", "target": "509c9d18c03750ab5a1af4533e9e3f71", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}}, {"rule": 2, "type": "equivalent", "target": "b3e55b2d8440115c6283ddb4434aed5d", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}}], "version": "18.3", "category_label": "BUG 修复", "also_in": [], "variants": [], "related_changes": [{"db_id": "1f6375c5be0406ebaeab1ddd1281f48a", "kind": "equivalent", "version": "17.9", "label": "17.9", "title": "修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}, "url": "/docs/compare/?release=17.9#17.9-00f1ed550848c3b5", "source_url": "/docs/release/17.9/#RELEASE-17-9-CHANGES"}, {"db_id": "b3e55b2d8440115c6283ddb4434aed5d", "kind": "equivalent", "version": "16.13", "label": "16.13", "title": "修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}, "url": "/docs/compare/?release=16.13#16.13-63ccf52c03df56be", "source_url": "/docs/release/16.13/#RELEASE-16-13-CHANGES"}, {"db_id": "509c9d18c03750ab5a1af4533e9e3f71", "kind": "equivalent", "version": "15.17", "label": "15.17", "title": "修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}, "url": "/docs/compare/?release=15.17#15.17-f14d3ac393cef450", "source_url": "/docs/release/15.17/#ZH-AUTO-RELEASE-15-SECT2-2"}, {"db_id": "08e9766e078b0f98d664963d7351568a", "kind": "equivalent", "version": "14.22", "label": "14.22", "title": "修复在从 PL/pgSQL 函数返回其值时，将复合类型变量转换为域类型的问题", "evidence": {"same_day": true, "patch_ids": ["4682bfcc99694f6b7bf7c07af3082c2e"], "statement_hash": "257a19cad310234769985e6594cf9f32698b7849a63b72427ee23e58e321e7d5"}, "url": "/docs/compare/?release=14.22#14.22-3b6651931176e1ab", "source_url": "/docs/release/14.22/#ZH-AUTO-RELEASE-14-SECT2-2"}]}, {"id": "18.3-72cba4c8d34e077e", "cves": [], "html": "<p>修复 <code>contrib/hstore</code> 二进制输入函数中潜在的空指针解引用问题（Michael Paquier）<a href=\"https://postgr.es/c/4a0843c53\">§</a></p>\n<p><code>hstore</code> 的接收函数在输入包含重复键时会崩溃。由 PostgreSQL 生成的 <code>hstore</code> 值永远不会包含重复键，因此这一错误一直未被发现。恶意构造或损坏的数据都可能触发该崩溃。</p>", "text": "修复 contrib/hstore 二进制输入函数中潜在的空指针解引用问题（Michael Paquier）§ hstore 的接收函数在输入包含重复键时会崩溃。由 PostgreSQL 生成的 hstore 值永远不会包含重复键，因此这一错误一直未被发现。恶意构造或损坏的数据都可能触发该崩溃。", "title": "修复 contrib/hstore 二进制输入函数中潜在的空指针解引用问题", "commits": ["4a0843c53"], "section": "变更", "category": "bugfix", "source_url": "/docs/release/18.3/#RELEASE-18-3-CHANGES", "source_hash": "20214df866b099d0ab12c5b30e2b32054f6cf39fae39bed47e62534149a7a8af", "section_path": ["变更"], "commit_groups": [["0dfbe42da", "31d0b917d", "4a0843c53", "63c05e03b", "a6f823e77", "f604cc695"]], "identity_text": "Fix potential null pointer dereference in contrib/hstore's binary input function (Michael Paquier) hstore's receive function crashed on input containing duplicate keys. hstore values generated by Postgres would never contain duplicate keys, so this mistake has gone unnoticed. The crash could be provoked by malicious or corrupted data.", "commit_aliases": ["0dfbe42da", "31d0b917d", "4a0843c53", "63c05e03b", "a6f823e77", "f604cc695"], "source_commits": ["4a0843c53"], "source_entry_id": "18.3/changes/009", "db_id": "302f35b8c992f59981d9c8bbcbf80b74", "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d", "relations": [{"rule": 2, "type": "equivalent", "target": "333c171c538037b7ded4bd4a610b1799", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}}, {"rule": 2, "type": "equivalent", "target": "3a65408ffac19ce6c90d333d8d5318cf", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}}, {"rule": 2, "type": "equivalent", "target": "6c2d1768700fe19270f371e13fa79343", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}}, {"rule": 2, "type": "equivalent", "target": "88acf3ddcff5993038ed18e0a7157844", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}}], "version": "18.3", "category_label": "BUG 修复", "also_in": [], "variants": [], "related_changes": [{"db_id": "3a65408ffac19ce6c90d333d8d5318cf", "kind": "equivalent", "version": "17.9", "label": "17.9", "title": "修复 contrib/hstore 二进制输入函数中潜在的空指针解引用问题", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}, "url": "/docs/compare/?release=17.9#17.9-09236fba7643dbb2", "source_url": "/docs/release/17.9/#RELEASE-17-9-CHANGES"}, {"db_id": "6c2d1768700fe19270f371e13fa79343", "kind": "equivalent", "version": "16.13", "label": "16.13", "title": "修复 contrib/hstore 二进制输入函数中潜在的空指针解引用问题", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}, "url": "/docs/compare/?release=16.13#16.13-cbdd4e244cbf6bcb", "source_url": "/docs/release/16.13/#RELEASE-16-13-CHANGES"}, {"db_id": "88acf3ddcff5993038ed18e0a7157844", "kind": "equivalent", "version": "15.17", "label": "15.17", "title": "修复 contrib/hstore 二进制输入函数中潜在的空指针解引用问题", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}, "url": "/docs/compare/?release=15.17#15.17-cf5bd5f4632c2dc1", "source_url": "/docs/release/15.17/#ZH-AUTO-RELEASE-15-SECT2-2"}, {"db_id": "333c171c538037b7ded4bd4a610b1799", "kind": "equivalent", "version": "14.22", "label": "14.22", "title": "修复 contrib/hstore 二进制输入函数中潜在的空指针解引用问题", "evidence": {"same_day": true, "patch_ids": ["05e85f727ef4e88378a37028157d43b6"], "statement_hash": "d3475d54feed07f63eac9d89bc0052bdf62514368b9675dd5fa3bbf2749ab52d"}, "url": "/docs/compare/?release=14.22#14.22-e6357c39af22cdb6", "source_url": "/docs/release/14.22/#ZH-AUTO-RELEASE-14-SECT2-2"}]}]}], "stats": [{"key": "all", "label": "全部变更", "count": 9}, {"key": "feature", "label": "新功能", "count": 0}, {"key": "bugfix", "label": "BUG 修复", "count": 6}, {"key": "security", "label": "安全相关", "count": 2}, {"key": "performance", "label": "性能改进", "count": 0}, {"key": "compatibility", "label": "兼容性变化", "count": 0}, {"key": "improvement", "label": "其他改进", "count": 1}], "total": 9, "release_count": 1, "cross_major": false, "cve_count": 2, "cves": [{"id": "CVE-2026-2006", "url": "https://www.postgresql.org/support/security/CVE-2026-2006/", "fixed": {"14": "14.21", "15": "15.16", "16": "16.12", "17": "17.8", "18": "18.2"}, "score": 8.8, "title": "避免在对“经过 TOAST 处理”的数据应用 substring() 时误报无效编码", "vector": "AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", "cna_url": "https://cveawg.mitre.org/api/cve/CVE-2026-2006", "affected": {"14": "14", "15": "15", "16": "16", "17": "17", "18": "18"}, "component": "core server", "published": {"14": "2026-02-12", "15": "2026-02-12", "16": "2026-02-12", "17": "2026-02-12", "18": "2026-02-12"}, "introduced": {}, "cvss_version": "3.0", "description_en": "Missing validation of multibyte character length in PostgreSQL text manipulation allows a database user to issue crafted queries that achieve a buffer overrun. That suffices to execute arbitrary code as the operating system user running the database. Versions before PostgreSQL 18.2, 17.8, 16.12, 15.16, and 14.21 are affected.", "affected_ranges": [{"from": "0", "until": "14.21"}, {"from": "15", "until": "15.16"}, {"from": "16", "until": "16.12"}, {"from": "17", "until": "17.8"}, {"from": "18", "until": "18.2"}], "first_published": "2026-02-12", "fixed_version": "18.2"}, {"id": "CVE-2026-2007", "url": "https://www.postgresql.org/support/security/CVE-2026-2007/", "fixed": {"18": "18.2"}, "score": 8.2, "title": "修复针对 CVE-2026-2007 的修复中遗漏的问题", "vector": "AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H", "cna_url": "https://cveawg.mitre.org/api/cve/CVE-2026-2007", "affected": {"18": "18"}, "component": "contrib module", "published": {"18": "2026-02-12"}, "introduced": {}, "cvss_version": "3.0", "description_en": "Heap buffer overflow in PostgreSQL pg_trgm allows a database user to achieve unknown impacts via a crafted input string. The attacker has limited control over the byte patterns to be written, but we have not ruled out the viability of attacks that lead to privilege escalation. PostgreSQL 18.1 and 18.0 are affected.", "affected_ranges": [{"from": "18", "until": "18.2"}], "first_published": "2026-02-12", "fixed_version": "18.2"}], "cve_available": true, "remaining_cves": [], "security_regressions": [], "warnings": [], "candidate_count": 9, "already_in_source_count": 0, "duplicate_count": 0, "excluded_count": 0, "exclusions": [], "source_as_of": "2026-09-26", "security_as_of": "2026-09-26"}