Improper Authentication in Getzep Graphiti REST API
CVE-2026-90601
6.9MEDIUM
What is CVE-2026-90601?
A vulnerability has been identified in the Getzep Graphiti REST API, specifically in an unknown function within the server/graph_service/main.py file. This flaw allows for improper authentication, enabling potential attackers to manipulate the API remotely. Currently, a pull request to address this issue is pending acceptance, highlighting the importance of prompt attention to ensure user security and maintain integrity in the API functionality.
Affected Version(s)
graphiti 0.30.0
graphiti 0.30.1
graphiti 0.30.2
