CVE-2025-56406: Command Injection
An issue was discovered in mcp-neo4j 0.3.0 allowing attackers to obtain sensitive information or execute arbitrary commands via the SSE service. NOTE: the Supplier's position is that authentication is not mandatory for MCP servers, and the mcp-neo4j MCP server is only intended for use in a local environment where authentication realistically would not be needed. Also, the Supplier provides middleware to help isolate the MCP server from external access (if needed).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-56406?
CVE-2025-56406 is classified as a critical vulnerability due to its potential to expose sensitive information and allow arbitrary command execution.
How do I fix CVE-2025-56406?
To mitigate CVE-2025-56406, it is recommended to upgrade to a patched version of mcp-neo4j immediately to eliminate the vulnerability.
What is affected by CVE-2025-56406?
CVE-2025-56406 specifically affects the mcp-neo4j version 0.3.0 and potentially earlier versions.
What type of attacks can be performed using CVE-2025-56406?
Attackers can exploit CVE-2025-56406 to gain unauthorized access to sensitive information or execute arbitrary commands on the affected system.
Is there a workaround for CVE-2025-56406?
Currently, the best course of action for CVE-2025-56406 is to update to a secure version as no known workarounds are recommended.