A collection of useful Neo4j Procedures
91%
Total Score
85
72
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10071 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. apoc is vulnerable to Insertion of Sensitive Information into Log File in versions 3.2.0.4 - 4.4.0.34 and 5.0.0 - 5.25.0. | 3.2.0.4 - 4.4.0.345.0.0 - 5.25.0 | Low |
CVE-2022-23532 org.neo4j.procedure:apoc is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 4.3.0.12 and 4.4.0.0 - 4.4.0.12. | 0.0.0 - 4.3.0.124.4.0.0 - 4.4.0.12 | High |
CVE-2022-37423 org.neo4j.procedure:apoc is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 4.4.0.0 - 4.4.0.8 and 0.0.0 - 4.3.0.7. | 0.0.0 - 4.3.0.74.4.0.0 - 4.4.0.8 | High |
CVE-2021-42767 org.neo4j.procedure:apoc is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 3.5.17, 4.2.0 - 4.2.10, 4.3.0.0 - 4.3.0.3 and 4.4.0.0 - 4.4.0.0. | 0.0.0 - 3.5.174.2.0 - 4.2.104.3.0.0 - 4.3.0.3 +1 more | Critical |
CVE-2018-1000820 org.neo4j.procedure:apoc is vulnerable to Improper Restriction of XML External Entity Reference in versions 0.0.0 - 3.4.0.3. | 0.0.0 - 3.4.0.3 | Critical |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.hdrhistogram:HdrHistogram Version 2.1.9 | — | — |
com.novell.ldap:jldap Version 2009-10-07 | — | — |
org.jsoup:jsoup Version 1.15.3 | — | — |
org.roaringbitmap:RoaringBitmap Version 0.7.17 | — | — |
org.apache.commons:commons-configuration2 Version 2.10.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant