Known CVE
Dgraph <=v25.3.0 - Admin Mutation Missing Authorization
Dgraph <=v25.3.0 contains an authentication bypass caused by missing authorization middleware for the restoreTenant admin mutation, letting unauthenticated attackers overwrite the database, read files, and perform SSRF, exploit requires no authentication.
CVE-2026-34976
Critical2026CVSS 10CWE-862
cve2026 · dgraph · auth-bypass · ssrf
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website