silverstripe/graphql Security Advisories for 3.0.0 (3)
-
CVE-2021-28661 Default GraphQL permission checker not inherited by query subclass
Affected version: >=3.0.0,<3.5.2
Reported by:
GitHub, FriendsOfPHP/security-advisories -
CVE-2020-26136 GraphQL doesn't honour MFA when using basic auth
Affected version: >=3.0.0,<3.5.0|>=4.0.0-alpha1,<4.0.0-alpha2
Reported by:
GitHub, FriendsOfPHP/security-advisories -
CVE-2019-12437: Cross Site Request Forgery (CSRF) Protection Bypass in GraphQL
Affected version: >=2.0.0,<2.0.5|>=3.0.0,<3.1.2|>=3.1.0,<3.1.2
Reported by:
FriendsOfPHP/security-advisories