Vulnerabilities > Silverstripe > Graphql

DATE CVE VULNERABILITY TITLE RISK
2024-01-23 CVE-2023-44401 Incorrect Authorization vulnerability in Silverstripe Graphql
The Silverstripe CMS GraphQL Server serves Silverstripe data as GraphQL representations.
network
low complexity
silverstripe CWE-863
5.3
2023-10-16 CVE-2023-40180 Resource Exhaustion vulnerability in Silverstripe Graphql
silverstripe-graphql is a package which serves Silverstripe data in GraphQL representations.
network
low complexity
silverstripe CWE-400
7.5
2023-03-16 CVE-2023-28104 Allocation of Resources Without Limits or Throttling vulnerability in Silverstripe Graphql 4.1.1/4.2.2
`silverstripe/graphql` serves Silverstripe data as GraphQL representations.
network
low complexity
silverstripe CWE-770
7.5