A vulnerability, which was classified as critical, has been found in Neo4j Enterprise edition up to 5.26.21/2026.01.3. The affected element is an unknown function of the component UserInfo Endpoint. The manipulation leads to incorrect authorization.
This vulnerability is uniquely identified as CVE-2026-1471. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.