Medium severity6.5NVD Advisory· Published Apr 13, 2023· Updated Jun 17, 2026
CVE-2023-22950
CVE-2023-22950
Description
An issue was discovered in TigerGraph Enterprise Free Edition 3.x. Data loading jobs in gsql_server, created by any user with designer permissions, can read sensitive data from arbitrary locations.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:tigergraph:tigergraph:*:*:*:*:cloud:*:*:*+ 1 more
- cpe:2.3:a:tigergraph:tigergraph:*:*:*:*:cloud:*:*:*range: >=3.0,<=3.7.0
- cpe:2.3:a:tigergraph:tigergraph:*:*:*:*:enterprise_free:*:*:*range: >=3.0,<=3.7.0
- TigerGraph/Enterprise Free Editiondescription
- Range: 3.x
Patches
Vulnerability mechanics
References
2- neo4j.com/security/cve-2023-22950/nvdExploitThird Party Advisory
- dev.tigergraph.com/forum/c/tg-community/announcements/35nvdVendor Advisory
News mentions
0No linked articles in our index yet.