CVE-2026-3172
Severity CVSS v4.0:
Pending analysis
Type:
CWE-191
Integer Underflow (Wrap or Wraparound)
Publication date:
25/02/2026
Last modified:
25/02/2026
Description
Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.
Impact
Base Score 3.x
8.10
Severity 3.x
HIGH



