Product Release Advisory - VMware Tanzu for Postgres on Kubernetes 4.2.4

VMware Tanzu Data Intelligence

8 more products

36283

29 October 2025

29 October 2025

CLOSED

HIGH

Product Release Advisory

Advisory ID:

TNZ-2025-0133

Severity:

High 

Issue Date:

2025-10-29

Updated on:

2025-10-29

Synopsys

Postgres Operator Migration from pg_autofailover to patroni, TDS package support, and Performance Optimizations which resulted in 11 CVEs fixed.

 

Product Version Release Advisory

Security Fixes

This release has the following security fixes, listed by component and area.

Component

Vulnerabilities Resolved

tanzu-postgres-kubernetes

CVE-2025-8194  (high)

CVE-2025-9230  (high)

CVE-2025-6020  (high)

CVE-2025-8941  (high)

CVE-2025-9232  (medium)

CVE-2025-32988  (medium)

CVE-2025-9231  (medium)

CVE-2025-32990  (medium)

CVE-2025-32989  (medium)

CVE-2025-47910  (medium)

CVE-2025-6395  (medium)

 

History

2025-10-29: Initial vulnerability report published.

Contact

E-mail: [email protected]

VMware Tanzu Security Advisories: https://tanzu.vmware.com/security