CVE-2025-11602
Description
Potential information leak in bolt protocol handshake in Neo4j Enterprise and Community editions allows attacker to obtain one byte of information from previous connections. The attacker has no control over the information leaked in server responses.
Weakness Type (CWE)
References
Other References
Frequently Asked Questions
What is CVE-2025-11602? +
How do I check if I'm vulnerable to CVE-2025-11602? +
Related Vulnerabilities
The cURL wrapper in Moodle retained the original request headers when following redirects, so HTTP authorization header information could be …
The Honeywell Experion PKS and OneWireless WDM contains Sensitive Information in Resource vulnerability in the component Control Data Access (CDA). …
SD-330AC and AMC Manager provided by silex technology, Inc. contain an issue with a sensitive information in resource not removed …
Sensitive information in resource not removed before reuse in some Intel(R) TDX Seamldr module software before version 1.5.02.00 may allow …
wire-webapp is the web application for the open-source messaging service Wire. A bug fix caused a regression causing an issue …
ImageSharp is a 2D graphics API. A data leakage flaw was found in ImageSharp's JPEG and TGA decoders. This vulnerability …