THREATOPS
THREAT OPSThreat News › Security advisory: Pre-authentication RCE in Ontotext GraphDB 11.4.3 Free edition (Ontotext / Graphwise)

Security advisory: Pre-authentication RCE in Ontotext GraphDB 11.4.3 Free edition (Ontotext / Graphwise)

lowfulldisclosurePublished 2026-08-18

<p>Posted by disclosure via Fulldisclosure on Aug 17</p>0day Rubbish Research Team is publicly disclosing a vulnerability in Ontotext GraphDB 11.4.3 Free edition (Ontotext / <br /> Graphwise). The research is published and a proof-of-concept is available.<br /> <br /> Pre-authentication RCE (CVSS 9.8, pre-authentication)<br /> <br /> Ontotext GraphDB 11.4.3 Free edition defaults to security=false,

Original source: https://seclists.org/fulldisclosure/2026/Aug/53