Aiven · Aiven-Db-Migrate · CVE-2025-55283
Name of the Vulnerable Software and Affected Versions:
aiven-db-migrate versions prior to 1.0.7
Description:
aiven-db-migrate is a database migration tool. A privilege escalation issue exists that could allow elevation to superuser inside PostgreSQL databases during a migration from an untrusted source server. The issue is due to `psql` executing commands embedded in a dump from the source server.
Recommendations:
Update to version 1.0.7 or later.