Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Parseplatform Subscribe
Filtered by product Parse Server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-15126 1 Parseplatform 1 Parse Server 2020-07-28 4.0 MEDIUM 6.5 MEDIUM
In parser-server from version 3.5.0 and before 4.3.0, an authenticated user using the viewer GraphQL query can by pass all read security on his User object and can also by pass all objects linked via relation or Pointer on his User object.