VYPR

GraphQL

by Hasura

CVEs (1)

  • CVE-2021-47715MedDec 22, 2025
    risk 0.34cvss 5.3epss 0.00

    Hasura GraphQL 1.3.3 contains a server-side request forgery vulnerability that allows attackers to inject arbitrary remote schema URLs through the add_remote_schema endpoint. Attackers can exploit the vulnerability by sending crafted POST requests to the /v1/query endpoint with…