Security Advisories for github.com/dgraph-io/dgraph/v25 in go
Critical
about 1 month ago
Dgraph: Unauthenticated Admin Token Disclosure Leading to Authentication Bypass via /debug/vars
go
github.com/dgraph-io/dgraph, github.com/dgraph-io/dgraph/v24, github.com/dgraph-io/dgraph/v25
Critical
about 1 month ago
Dgraph: Pre-Auth Full Database Exfiltration via DQL Injection in NQuad Lang Field
go
github.com/dgraph-io/dgraph, github.com/dgraph-io/dgraph/v24, github.com/dgraph-io/dgraph/v25
Critical
about 1 month ago
Dgraph: Pre-Auth Full Database Exfiltration via DQL Injection in Upsert Condition Field
go
github.com/dgraph-io/dgraph, github.com/dgraph-io/dgraph/v24, github.com/dgraph-io/dgraph/v25
Critical
about 1 month ago
Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints
go
github.com/dgraph-io/dgraph, github.com/dgraph-io/dgraph/v24, github.com/dgraph-io/dgraph/v25
Critical
about 2 months ago
Dgraph: Pre-Auth Database Overwrite + SSRF + File Read via restoreTenant Missing Authorization
go
github.com/dgraph-io/dgraph, github.com/dgraph-io/dgraph/v24, github.com/dgraph-io/dgraph/v25