GHSA-7cj7-rcw6-p68v
HIGHCVE-2026-22743Spring AI's spring-ai-neo4j-store contains a Cypher injection vulnerability in Neo4jVectorFilterExpressionConverter. When a user-controlled string is passed as a filter expression key in Neo4jVectorFilterExpressionConverter of spring-ai-neo4j-store, doKey() embeds the key into a backtick-delimited Cypher property accessor (node.metadata.) after stripping only double quotes, without escaping embedd
- Affected
- >= 1.0.0-M5, < 1.0.5
- Fixed in
- 1.0.5
- Weakness
- CWE-89
- Published
- 2026-03-27
- Source
- github