LIVE · cybersecurity feed
Live wire
vendor

Neo4j

4 CVEs published in the last four months. Exploited flaws first.

Critical1
High2
Medium1
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-15249.8criticalneo4jAn edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unautho178d ago
CVE-2026-145877.5highneo4jNeo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bi31d ago
CVE-2026-14977.2highneo4jIncorrect resolving of namespaces in composite databases in Neo4j Enterprise edition prior to versions 2026.02 and 178d ago
CVE-2026-14716.5mediumneo4jExcessive caching of authentication context in Neo4j Enterprise edition versions prior to 2026.01.4 leads to authen178d ago

Filter the full tracker by Neo4j