CVE-2026-58473
CRITICALCognee < 1.2.0 Unauthorized LLM Configuration Overwrite via /api/v1/settings
Title source: cnaDescription
Cognee before 1.2.0 contains an improper access control vulnerability that allows unauthenticated attackers to overwrite the global LLM provider configuration by self-registering an account and calling the settings endpoint, which performs no admin or superuser check. Attackers can redirect all LLM operations instance-wide to an attacker-controlled endpoint by exploiting the process-wide singleton configuration cache, enabling exfiltration of prompts, uploaded documents, extracted entities, and knowledge graph content from all users.
References (4)
Core 4
Core References
Exploit technical-description
exploit
Researcher Disclosure
https://github.com/topoteretes/cognee/issues/3084
Patch patch
Fix Commit
https://github.com/topoteretes/cognee/commit/d10b1b77e2157c6238fd4d1acb1923a048991699
Third Party Advisory third-party-advisory
https://www.vulncheck.com/advisories/cognee-unauthorized-llm-configuration-overwrite-via-api-v1-settings
Scores
CVSS v3
9.1
EPSS
0.0037
EPSS Percentile
30.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
yes
Technical Impact
total
Details
CWE
CWE-306
CWE-862
Status
published
Products (1)
topoteretes/cognee
< 1.2.0
Published
Jul 07, 2026
Tracked Since
Jul 08, 2026