Impact
ArcadeDB’s Gremlin wire‑protocol plugin authenticates clients using SASL PLAIN but does not enforce any authorization; this allows any valid server credential to select any database through a traversal‑source alias, giving the attacker read, write, and drop privileges on all databases without restriction.
Affected Systems
ArcadeData ArcadeDB (com.arcadedb:arcadedb-gremlin) versions 26.7.3 and earlier are affected. The fix is available starting with version 26.8.1.
Risk and Exploitability
The vulnerability has a CVSS score of 8.7, indicating high severity. EPSS data is unavailable and the flaw is not listed in CISA’s KEV catalog. Because authentication succeeds for any credential, the bypass can be exploited remotely by anyone with valid SASL credentials, resulting in full compromise of all databases on the server.
OpenCVE Enrichment