the-guild kayıtları
the-guild üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2021-23326İstismar yok | This affects the package @graphql-tools/git-loader before 6.2.6.the-guild · graphql-tools · CWE-78 | Yüksek8,8 | — | %2,8 | 20 Oca 2021 |
30İzleyin | CVE-2025-27098İstismar yok | Unwanted access to the entire file system vulnerability due to a missing check in `staticFiles` HTTP handler in graphql-meshthe-guild · graphql mesh cli · CWE-22 | Yüksek7,5 | — | %0,4 | 20 Şub 2025 |
20İzleyin | CVE-2025-27097İstismar yok | Cache variables with the operations when transforms exist on the root level even if variables change in the further requests with the same operationthe-guild · graphql mesh · CWE-400 | Orta5,1 | — | %0,4 | 20 Şub 2025 |
- CVE-2021-2332636İzleyin
This affects the package @graphql-tools/git-loader before 6.2.6.
YüksekCVSS 8,8İstismar yokEPSS %3the-guild · graphql-tools20 Oca 2021
- CVE-2025-2709830İzleyin
Unwanted access to the entire file system vulnerability due to a missing check in `staticFiles` HTTP handler in graphql-mesh
YüksekCVSS 7,5İstismar yokEPSS %0the-guild · graphql mesh cli20 Şub 2025
- CVE-2025-2709720İzleyin
Cache variables with the operations when transforms exist on the root level even if variables change in the further requests with the same operation
OrtaCVSS 5,1İstismar yokEPSS %0the-guild · graphql mesh20 Şub 2025