Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2783▲ 27 respecto a la semana anterior
Críticas / altas1477▲ 294 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 441 respecto a la semana anterior
–

93 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
RecibidaAlta (7.4)0.27%—Graphql ToolsAI1/10/20261/10/2026
GraphQL Tools provides utilities for building, stitching, and mocking GraphQL schemas. Prior to 1.1.35, the executor-legacy-ws buildWSLegacyExecutor() function hardcodes TLS certificate rejection off for Node.js connections to wss:// endpoints. Applications using the executor directly, or url-loader with…
Pendiente de análisisMedia (5.4)0.27%—WpgraphqlAI23/9/202623/9/2026
WPGraphQL provides a GraphQL API for WordPress sites. Prior to 2.22.2, the updatePost mutation in src/Mutation/PostObjectUpdate.php checks only the collection-level edit_posts capability and the post author, but does not enforce the object-level edit_post capability or require publish_posts for public status…
AplazadaMedia (6.5)0.34%—Wpgraphql Smart CacheAI19/9/202621/9/2026
The WPGraphQL Smart Cache WordPress plugin before 2.3.2 does not require authorisation or validate a caller-supplied query identifier before storing a persisted query from a request, allowing unauthenticated users to publish arbitrary query documents and claim query aliases before a site's own frontend registers them.
AplazadaAlta (8.8)0.42%—Gato GraphqlAI11/9/202611/9/2026
Subscriber Privilege Escalation in Gato GraphQL <= 19.2.3 versions.
Pendiente de análisisAlta (7.5)0.61%—Smallrye GraphqlAI31/8/20261/9/2026
A flaw was found in SmallRye GraphQL. The number scalar coercion for BigInteger does not properly validate the magnitude of float or string inputs. An unauthenticated remote attacker can exploit this by sending a GraphQL query containing a large exponent float literal. This can lead to the allocation of extremely…
AplazadaBaja (2.3)0.39%—Ash-project ASH GraphqlAI30/8/20261/9/2026
Exposure of Data Element to Wrong Session vulnerability in ash-project ash_graphql can deliver one subscription's resolved records to a different subscriber's topic. AshGraphql.Subscription.Batcher.do_send/5 reads the resolved batch from the process dictionary via Process.get(:batch_resolved) and then unconditionally…
AplazadaBaja (2.3)0.43%—Ash-project ASH GraphqlAI30/8/20261/9/2026
Incorrect Authorization vulnerability in ash-project ash_graphql delivers GraphQL subscription payloads for records a subscriber is not authorized to see. In AshGraphql.Subscription.Batcher, do_send/5 resolves the first notification of a batch and filters it with should_send?/1, which drops results whose errors are…
AplazadaAlta (8.7)0.55%—Ash-project ASH GraphqlAI30/8/20261/9/2026
Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_graphql allows an unauthenticated client to bypass the configured GraphQL query-complexity limit and force an unbounded database read. AshGraphql.Graphql.Resolver.query_complexity/3 multiplies child complexity by the requested page…
AplazadaMedia (6.9)0.52%—Ash-project ASH GraphqlAI30/8/20261/9/2026
Improper Input Validation vulnerability in ash-project ash_graphql allows an unauthenticated client to crash a relay node(id: ...) query with an unhandled KeyError. AshGraphql.Graphql.Resolver.resolve_node/2 decodes the client-supplied global ID with decode_relay_id/1, which only base64-decodes the string and splits…
AplazadaAlta (7.1)0.43%—Ash-project ASH GraphqlAI30/8/20263/9/2026
Incorrect Authorization vulnerability in ash-project ash_graphql allows an authenticated subscriber in one tenant to receive another tenant's records over GraphQL subscriptions. The subscription resolver in AshGraphql.Graphql.Resolver authorizes each notification payload in memory: its fast path calls Ash.can/3 with…
AplazadaMedia (6.9)0.52%—Ash-project ASH GraphqlAI30/8/20261/9/2026
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_graphql allows a remote client to read internal field names that an application configured its error_handler to redact. In AshGraphql.Errors, each error is passed to the configured error_handler and the returned map is merged…
ModificadaAlta (7.5)0.46%—Vmware Spring FOR Graphql27/8/20262/9/2026
Spring for GraphQL's Spring Data pagination support resolves arguments of a scrollable query and forwards the client-supplied values to the underlying repository. An attacker can forge a malicious query for a Connection field that can exhaust application memory or place significant, prolonged load on the underlying…
ModificadaAlta (7.4)0.37%—Vmware Spring FOR Graphql27/8/20261/9/2026
The GraphiQL page bundled with Spring for GraphQL sends requests to the GraphQL endpoints of the application. An attacker can share a malicious URL so that the victim's browser might leak confidential information to the attacker's website. Spring for GraphQL 2.0.0 - 2.0.4 Spring for GraphQL 1.4.0 - 1.4.6 Spring for…
ModificadaMedia (5.9)0.37%—Vmware Spring FOR Graphql27/8/20262/9/2026
Spring for GraphQL is vulnerable to Denial of Service attacks when using the WebSocket client with keepAlive enabled. Spring for GraphQL 2.0.0 - 2.0.4 Spring for GraphQL 1.4.0 - 1.4.6 Spring for GraphQL 1.3.0 - 1.3.9
ModificadaAlta (8.1)0.33%—Vmware Spring FOR Graphql27/8/20262/9/2026
The GraphiQL page bundled with Spring for GraphQL loads JavaScript libraries from a public CDN, without Subresource Integrity checks. An attacker can inject malicious code in those scripts and execute arbitrary code on the browser loading the GraphiQL page. Spring for GraphQL 2.0.0 - 2.0.4 Spring for GraphQL 1.4.0 -…
ModificadaAlta (8.1)0.44%—Vmware Spring FOR Graphql27/8/20262/9/2026
Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. Spring for GraphQL 2.0.0 - 2.0.4
Pendiente de análisisMedia (5.9)0.18%—Graphql-go GraphqlAI25/8/20269/9/2026
github.com/graphql-go/graphql (GraphQL for Go) through 0.8.1 does not validate that a scalar variable value matches its declared type. The built-in coerceString and coerceBool functions (scalars.go) accept input whose type does not match the declared String, ID, or Boolean scalar instead of raising the request error…
Pendiente de análisisAlta (7.6)0.49%—Neo4j GraphqlAI18/8/20269/9/2026
@neo4j/graphql from 5.2.0 until the patched versions fails to enforce field-level @authentication rules on root custom-resolver fields when a type-level @authentication rule is also present on the same operation type. When both a type-level @authentication (on Query/Mutation) and a field-level @authentication (on a…
Pendiente de análisisAlta (8.2)0.59%—Neo4j GraphqlAI6/8/202618/8/2026
@neo4j/graphql library versions prior to 7.5.6 fail to verify the authenticity of a client-supplied, pre-decoded JWT object passed through GraphQL subscription connectionParams. As a result, any unauthenticated remote client that can open a GraphQL-over-WebSocket connection can forge arbitrary JWT claims (e.g. sub,…
Pendiente de análisisMedia (6.9)0.45%—WpgraphqlAI31/7/202610/9/2026
WPGraphQL provides a GraphQL API for WordPress sites. From 2.0.0 until 2.15.1, the deprecated user field on SendPasswordResetEmailPayload lets an unauthenticated caller distinguish existing author-class accounts through the sendPasswordResetEmail mutation and obtain public profile fields. This issue is fixed in…
AnalizadaMedia (6)0.27%—Hasura Graphql Engine7/7/202617/8/2026
Hasura is an open-source product that provides users GraphQL or REST APIs. Prior to 2.49.2 and 2.45.5, a user can use a where clause on a table computed field (returning SETOF some_table) to infer row values that ought to be filtered for their role based on some_table's row-level permissions. While such rows cannot be…
AplazadaAlta (7.5)0.32%—WpgraphqlAI15/6/202617/6/2026
Unauthenticated SQL Injection in WPGraphQL < 2.11.1 versions.
AnalizadaAlta (7.5)0.39%—Vmware Spring FOR Graphql11/6/202623/7/2026
The Spring GraphQL annotation detection mechanism for @Controller data fetchers may not correctly resolve annotations on methods within type hierarchies. This can be an issue if such annotations are used for authorization decisions. When all conditions are met, security annotations can be ignored at runtime. Affected…
AnalizadaAlta (8.1)0.23%—Vmware Spring FOR Graphql11/6/202623/7/2026
Spring for GraphQL applications that have enabled the WebSocket transport are vulnerable to Cross-Site WebSocket Hijacking. An attacker can trick an authenticated user into visiting a malicious page, allowing the attacker to execute arbitrary GraphQL operations with the victim's credentials. Affected versions: Spring…
AnalizadaCrítica (9.8)0.68%—Vmware Spring FOR Graphql11/6/202623/7/2026
Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. An attacker can craft a malicious GraphQL request that can lead to Remote Code Execution when the application exposes a paginated (Connection) field and the classpath contains specific classes that can…