silverstripe/graphql Security Advisories for 3.2.1 (3)
-
CVE-2021-28661 Default GraphQL permission checker not inherited by query subclass
Affected version: >=3.0.0,<3.5.2
Reported by:
GitHub, FriendsOfPHP/security-advisories -
CVE-2020-26136 GraphQL doesn't honour MFA when using basic auth
Affected version: >=3.0.0,<3.5.0|>=4.0.0-alpha1,<4.0.0-alpha2
Reported by:
GitHub, FriendsOfPHP/security-advisories -
CVE-2020-6165: Limited queries break CanViewPermissionChecker
Affected version: >=3.2.0,<3.2.4
Reported by:
FriendsOfPHP/security-advisories