CVE-2023-22950: Tigergraph

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue was discovered in TigerGraph Enterprise Free Edition 3.x. Data loading jobs in gsql_server, created by any user with designer permissions, can read sensitive data from arbitrary locations.

Affected products

  • Tigergraph Tigergraph: from 3.0, up to and including 3.7.0

Published 2023-04-13. Last modified 2026-06-17.