JFrog Security[verified]@JFrogSecurityPatch
The PSA confirms that CVE-2026-33815 and CVE-2026-33816 have been resolved in jackc/pgx v5.9.0 and corrects misinformation that the newer v5.9.1 remains vulnerable.
JFrog Security[verified]@JFrogSecurityPatch
Fix commits for CVE-2026-33815 and CVE-2026-33816 are provided, along with requests for updating the Go vulnerability database.
PulsePatch.io@pulsepatchioPatch
The tweet announces a critical memory‑safety flaw in pgx and urges users to watch for a forthcoming patch.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The notice logs CVE-2026-33815 as a memory-safety flaw in the pgx/v5 GitHub repo, providing alert subscription links but no patches, PoC, or exploit details.
CVE@CVEnewDisclosure
The statement references CVE‑2026‑33815 in the pgx repository, noting it as a memory‑safety flaw but providing no PoC, exploit, active usage, or patch information.