VYPR

GraphQL

by Smallrye

CVEs (1)

  • CVE-2026-76763HigAug 31, 2026
    risk 0.49cvss 7.5epss

    A flaw was found in SmallRye GraphQL. The number scalar coercion for BigInteger does not properly validate the magnitude of float or string inputs. An unauthenticated remote attacker can exploit this by sending a GraphQL query containing a large exponent float literal. This can…