← Back to Resources
Open Source NewsFebruary 13, 20252 min read

PostgreSQL Security Release Fixes libpq SQL Injection

By BIOS Founding Team

PostgreSQL Security Release Fixes libpq SQL Injection

This update fixed CVE-2025-1094, a SQL injection vulnerability in libpq's quoting functions including PQescapeLiteral and PQescapeIdentifier, plus more than 70 other bug fixes.

It was widely covered as a high-severity psql client issue.

Full details: https://www.postgresql.org/about/news/postgresql-173-167-1511-1416-and-1319-released-3015/