#Graph Database
All CosmicBytez Labs articles tagged #Graph Database, across news, security advisories, how-to guides, and projects.
- Security
CVE-2026-107908: Unauthenticated Heap Overflow in FalkorDB's Bolt Protocol
An unauthenticated attacker can corrupt heap memory in FalkorDB's experimental Bolt endpoint via a crafted RESET message, risking RCE.
- Security
CVE-2026-107909: Heap Out-of-Bounds Write in FalkorDB's WebSocket Bolt Transport
A crafted WebSocket frame with an oversized payload length corrupts heap memory in FalkorDB's Bolt endpoint, risking DoS and RCE.
- Security
CVE-2026-5759: FalkorDB Double-Free in RDB Decoder Enables Remote Code Execution
A crafted RDB replication stream triggers a double-free in FalkorDB's graph decoder, allowing DoS or RCE on unauthenticated instances.
- Security
CVE-2026-7826: FalkorDB Heap Out-of-Bounds Read in Buffer Serializer
A crafted replication stream exploits missing bounds checks in FalkorDB's buffer serializer, risking crashes and heap data disclosure.
- Security
CVE-2026-6057: FalkorDB Browser Unauthenticated Path
FalkorDB Browser 1.9.3 contains a critical unauthenticated path traversal vulnerability in its file upload API that allows remote attackers to write...