CVE-2024-34517

MEDIUM6.5EPSS 0.21%

Neo4j Cypher component mishandles IMMUTABLE privileges

Published: 5/7/2024Modified: 2/4/2026

Description

The Cypher component in Neo4j between v.5.0.0 and v.5.19.0 mishandles IMMUTABLE.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM6.5CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

References (7)