A directory traversal vulnerability in the apoc plugins in Neo4J Graph database prior to 4.4.0.1 allows malicious users to read local files, and sometimes create local files. This is fixed in 3.5.17, 4.2.10, 4.3.0.4, and 4.4.0.1.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
neo4j awesome procedures |