VYPR

apk package

wolfi/neo4j-2026.07

pkg:apk/wolfi/neo4j-2026.07

Vulnerabilities (2)

  • CVE-2026-59903MedAug 17, 2026
    affected < 2026.07.1-r2fixed 2026.07.1-r2

    Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2.17.Final, io.netty.handler.codec.http.cors.CorsHandler setVaryHeader replaces application Vary headers such as Authorization or Cookie with Origin, allowing a caching proxy or CDN

  • CVE-2026-49844MedJul 10, 2026
    affected < 2026.07.1-r1fixed 2026.07.1-r1

    Improper encoding of non-finite floating-point values during MapMessage JSON serialization in Apache Log4j API produces output that is not valid JSON. This issue affects Apache Log4j API versions 2.13.1 through 2.25.4 and version 2.26.0. The fix for CVE-2026-34481 did not cover