ADVISORY UNAUTH-2026-0019
TYPE exposure-class
PRODUCT Weaviate
SEVERITY CRITICAL
Weaviate vector database open without authentication
published 2026-08-05 · updated 2026-08-05
Why it matters
Your Weaviate instance answers anyone: full schema and every stored vector readable, writable, poisonable and deletable — including stores that may hold agent memory (OWASP ASI06). Weaviate is wide open unless you turn on authentication.
What a probe sees
GET :8080/v1/meta and /v1/schema answer without auth.
Internet-facing exposure — observable from the public internet with GET-only probes (the same probes unauth.dev sends).
agent-memory-store OWASP ASI06
In the wild
No honeypot telemetry for this service yet (in_the_wild: null in the dataset). We do not invent numbers. The block appears when the honeypot has real data.
Fix it
References
- https://weaviate.io/developers/weaviate/configuration/authentication
- https://genai.owasp.org/2025/12/09/owasp-top-10-for-agentic-applications-the-benchmark-for-agentic-security-in-the-age-of-autonomous-ai/
Cite this record
unauth.dev advisory UNAUTH-2026-0019 — published 2026-08 · CC-BY 4.0
Canonical URL: https://unauth.dev/advisories/UNAUTH-2026-0019. This record is part of the unauth.dev advisory dataset, published under CC-BY 4.0: attribute "unauth.dev / Raúl Acedo". Schema: additive-only within v1; this id will never be renumbered or reused.