Skip to content
Noroxi

graphql records

4 published records for vendor graphql.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

4 records
  • async-graphql vulnerable to Directive Overload

    HighCVSS 7.5No exploitEPSS 1%

    async-graphql · async-graphqlOct 3, 2024

  • Versions of the package graphql from 16.3.0 and before 16.8.1 are vulnerable to Denial of Service (DoS) due to insufficient checks in the Ov

    MediumCVSS 5.3Proof of conceptEPSS 1%

    graphql · graphqlSep 20, 2023

  • XSS vulnerability in GraphiQL

    MediumCVSS 4.7No exploitEPSS 1%

    graphql · graphiqlNov 4, 2021

  • XSS vulnerability in GraphQL Playground

    MediumCVSS 4.7No exploitEPSS 1%

    graphql · playgroundNov 4, 2021