Skip to main content

🪐 Backed by $16.5M to build the security workforce for the security workforce. Meet the new Cantina.

Vulnerability disclosure

Filter keys enable Cypher injection in Neo4j stores

CVE-2026-22743

Affected product
Spring AI
Severity
High
CVSS
7.5
Weakness
CWE-89
Published

Disclosure summary

Cantina identified and human-verified this vulnerability in Spring AI. The finding was coordinated with the affected maintainer through responsible disclosure before publication.

Filter keys enable Cypher injection in Neo4j stores.

Verification standard

Cantina publishes a disclosure only after reproducing the behavior, validating its security impact, and coordinating remediation with the affected project.