Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

4 advisories

Loading
Apollo Router vulnerable to Critical Regression In Query Plan Cache Critical
CVE-2024-32971 was published for apollo-router (Rust) May 2, 2024
xuorig Credited to xuorig, o0Ignition0o, peakematt, IvanGoncharov, Geal, glasser, jasonbarnett667, and abernix o0Ignition0o o0Ignition0o
peakematt peakematt IvanGoncharov IvanGoncharov Geal Geal glasser glasser jasonbarnett667 jasonbarnett667 abernix abernix
Apollo Router's Compressed Payloads do not respect HTTP Payload Limits High
CVE-2024-28101 was published for apollo-router (Rust) Mar 6, 2024
IvanGoncharov Credited to IvanGoncharov, Geal, peakematt, and sunnypatell Geal Geal
peakematt peakematt sunnypatell sunnypatell
@apollo/experimental-nextjs-app-support Cross-site Scripting vulnerability High
CVE-2024-23841 was published for @apollo/experimental-nextjs-app-support (npm) Jan 30, 2024
phryneas Credited to phryneas, IkeMurami, and peakematt IkeMurami IkeMurami
peakematt peakematt
Apollo Router Unnamed "Subscription" operation results in Denial-of-Service Moderate
CVE-2023-41317 was published for apollo-router (Rust) Sep 7, 2023
nmoutschen Credited to nmoutschen, abernix, o0Ignition0o, BrynCooke, peakematt, jasonbarnett667, and Geal abernix abernix
o0Ignition0o o0Ignition0o BrynCooke BrynCooke peakematt peakematt jasonbarnett667 jasonbarnett667 Geal Geal
ProTip! Advisories are also available from the GraphQL API