Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-73975— djehuty: Authenticated SPARQL injection in session editing allows writing arbitrary RDF triples

Quick assessment

Affected
4TUResearchData djehuty
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

djehuty 是由 4TU.ResearchData 开发的一个研究数据仓储系统。在版本 26.3.2 之前,经过身份验证的数据提交者可以通过提供精心构造的会话名称,向具有状态修改功能(DELETE/INSERT)的 SPARQL 查询中注入任意 SPARQL 代码,从而在 RDF 存储库中的任意位置写入(并删除)任意的三元组。由于该 RDF 存储库在所有账户和数据集之间共享,因此这构成了对整个仓储系统元数据完整性的破坏,而不仅仅是攻击者自身记录的问题。拥有一个已登录的账户是触发此漏洞的前提条件。djehuty

CVSS 8.4 · High EPSS 0.30% · P21

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProduct Version RangeStatus
4TUResearchData djehuty < 26.3.2 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-73975

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
djehuty: Authenticated SPARQL injection in session editing allows writing arbitrary RDF triples
Source: CVE Program / CVE List V5
Vulnerability Description
djehuty is a research data repository system developed by 4TU.ResearchData. Prior to version 26.3.2, an authenticated depositor can inject arbitrary SPARQL into a state-modifying (DELETE/INSERT) query by supplying a crafted session name, letting them write (and delete) arbitrary triples anywhere in the RDF store. Because the RDF store is shared across all accounts and datasets, this is an integrity compromise of the whole repository's metadata, not just the attacker's own records. Having a logged-in account is a precondition. djehuty allows self-registration via ORCID/SAML, so this is a low barrier in typical deployments. This issue has been patched in version 26.3.2.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:H/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
数据查询逻辑中特殊元素的不当中和
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
4TUResearchData djehuty < 26.3.2 -

II. Public POCs for CVE-2026-73975

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-73975

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-73975 (1)

Vendor Pages for CVE-2026-73975 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-73975

No comments yet


Leave a comment