Report: CVE-2026-41492 - Unauthenticated Admin Token Disclosure Leading to Authentication Bypass via /deb

Report: CVE-2026-41492 - Unauthenticated Admin Token Disclosure Leading to Authentication Bypass via /deb

CVE ID :CVE-2026-41492 Published : April 24, 2026, 7:17 p.m. | 39 minutes ago Description :Dgraph is an open source distributed GraphQL database. Prior to 25.3.3, Dgraphl exposes the process command line through the unauthenticated /debug/vars endpoint on Alpha. Because the admin token is commonly supplied via the --security

CVE Details

Published
April 24, 2026