Neo4j
5 known vulnerabilities
Top Products
Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask
An edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unauthorised
Excessive caching of authentication context in Neo4j Enterprise edition versions prior to 2026.01.4 leads to authenticat
Incorrect resolving of namespaces in composite databases in Neo4j Enterprise edition prior to versions 2026.02 and 5.26.
Insufficient escaping of unicode characters in query log in Neo4j Enterprise and Community editions prior to 2026.01 can
Frequently Asked Questions
How many CVEs affect Neo4j?
Neo4j has 5 CVE records in our database, including 1 critical and 2 high severity vulnerabilities.
What are the most severe Neo4j vulnerabilities?
Neo4j has 1 critical severity (CVSS 9.0+) and 2 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Neo4j vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Neo4j products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Neo4j Vulnerabilities
CyberStrike scans your infrastructure for Neo4j vulnerabilities and provides real-time remediation guidance.
Get Started