VYPR
Unrated severityNVD Advisory· Published Jun 25, 2026· Updated Jun 26, 2026

Parse Server - Unreviewed Code Execution via Malicious Version Tags

CVE-2021-47986

Description

Parse Server before 4.10.0 contains a supply chain vulnerability where incorrect version tags were pushed to the repository linking to unreviewed code in a personal fork. Attackers could exploit this by specifying affected version tags in dependency declarations to execute unreviewed and potentially malicious code.

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.