S4E just found a high top 10 tcp port service scan
critical·Product Based Web Vulnerabilities·Updated Aug 13, 2026

CVE-2026-34976 Scanner

CVE-2026-34976 Scanner - Missing Authorization vulnerability in Dgraph

Est. Time~1 minutes
Scan TypeGroup Scan
Targetsdomain, subdomain, ipv4
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2026-34976
10.0
CVSScritical
Exploitable remotely over the internet · no authentication required.

Dgraph is an open source distributed GraphQL database. Prior to 25.3.1, the restoreTenant admin mutation is missing from the authorization middleware config (admin.go), making it completely unauthenticated. Unlike the similar restore mutation which requires Guardian-of-Galaxy authentication, restoreTenant executes with zero middleware. This mutation accepts attacker-controlled backup source URLs (including file:// for local filesystem access), S3/MinIO credentials, encryption key file paths, and Vault credential file paths. An unauthenticated attacker can overwrite the entire database, read server-side files, and perform SSRF. This vulnerability is fixed in 25.3.1.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
dgraphby dgraph-io
< 25.3.1
Updated Aug 19, 2026View on NVD →
Detail

Dgraph is widely used by developers and organizations for building high-performance, distributed, and scalable graph database solutions. It caters to various applications in data-intensive industries requiring robust database management functionalities. Known for its speed and efficiency, Dgraph facilitates complex query processing and data retrieval, supporting diverse business requirements. It's often utilized in scenarios where real-time data engagement is crucial, such as recommendation engines, knowledge graphs, and social networking sites. Moreover, it accommodates a range of client goals from analytics to data integration. The software is appreciated for its ease of use, being accessible for startups and large enterprises alike.

The vulnerability arises due to missing authorization middleware for an admin mutation operation in Dgraph. This flaw allows unauthenticated users to exploit the 'restoreTenant' mutation, granting them undue access to sensitive operations. Consequently, attackers can overwrite databases and read restricted server files. The oversight in the authorization mechanism notably increases the likelihood of unauthorized actions. When unaddressed, it poses severe security risks, enabling exploitation without authentication. The vulnerability undermines data integrity and confidentiality across systems deploying vulnerable Dgraph versions.

The vulnerability specifically targets the 'restoreTenant' GraphQL mutation in Dgraph's admin interface. It occurs when inputs bypass necessary authorization checks, allowing external actors to initiate unauthorized database operations. Such operations include restoring database states or reading server-based files through SSRF payloads. By sending crafted requests to vulnerable endpoints, attackers can manipulate or exfiltrate sensitive data. The missing authorization checks in earlier versions up to 25.3.0 reveal transactional information to unauthorized entities. This attack vector is amplified through public-facing Dgraph instances lacking adequate security restrictions.

If exploited, this vulnerability can lead to significant security breaches including the unauthorized rewriting of database information. Attackers could execute SSRF attacks or leak sensitive server data, leading to broader network infiltration. The resultant data compromise extends to the potential manipulation of application data layers, potentially disrupting normal business operations. Exploitation may further expose stakeholders to confidentiality breaches, tarnishing organizational reputation. The risk heightens if the compromised data is critical, exposing it to misuse or financial fraud. Additionally, the attack may serve as an entry point for further malicious activities on the compromised network infrastructure.

REFERENCES

Solution Advice
  • Update Dgraph to version 25.3.1 or later to ensure authorization checks are effectively implemented for admin mutations.
  • Review and adjust firewall rules to restrict unauthorized access to Dgraph admin endpoints.
  • Regularly audit access logs to detect any unauthorized attempts to access administrative functions.
  • Implement multi-factor authentication (MFA) for sensitive admin operations to strengthen security.
  • Educate developers and database administrators on secure coding practices to prevent similar vulnerabilities in future deployments.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.