
🚨 CRITICAL: CVE-2026-58473 (CVSS 9.1) Cognee <1[.]2[.]0 allows unauthenticated attackers to hijack global LLM config, redirecting ALL instance operations to attacker-controlled endpoints. Exfiltrates prompts, docs & knowledge graphs from all users. Patch immediately! https://t.co/gcHGD8Genp
Post summary
CVE-2026-58473 is a critical flaw in Cognee versions <1.2.0 that allows unauthenticated attackers to hijack the global LLM configuration, redirect operations to malicious endpoints, and exfiltrate user data; a patch is urgently required.
