Graphql Go
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-37315 | Hig | 0.42 | 7.5 | 0.01 | Aug 1, 2022 | graphql-go (aka GraphQL for Go) through 0.8.0 has infinite recursion in the type definition parser. | ||
| CVE-2022-21708 | Med | 0.35 | 6.5 | 0.01 | Jan 21, 2022 | graphql-go is a GraphQL server with a focus on ease of use. In versions prior to 1.3.0 there exists a DoS vulnerability that is possible due to a bug in the library that would allow an attacker with specifically designed queries to cause stack overflow panics. Any user with… |
- risk 0.42cvss 7.5epss 0.01
graphql-go (aka GraphQL for Go) through 0.8.0 has infinite recursion in the type definition parser.
- risk 0.35cvss 6.5epss 0.01
graphql-go is a GraphQL server with a focus on ease of use. In versions prior to 1.3.0 there exists a DoS vulnerability that is possible due to a bug in the library that would allow an attacker with specifically designed queries to cause stack overflow panics. Any user with…