Spring / Spring for Graphql
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-59289 | Spring for GraphQL Denial of Service via pagination support | HIGH | 7.5 | Aug 27, 2026 |
| CVE-2026-59288 | Spring for GraphQL Information Exposure in GraphiQL support | HIGH | 7.5 | Aug 27, 2026 |
| CVE-2026-59287 | Spring for GraphQL WebSocket Client Denial of Service | MEDIUM | 5.9 | Aug 27, 2026 |
| CVE-2026-59286 | Spring for GraphQL loads Untrusted Resources in GraphiQL support | HIGH | 8.1 | Aug 27, 2026 |
| CVE-2026-59285 | Spring for GraphQL Unsafe Deserialization in pagination support | HIGH | 8.1 | Aug 27, 2026 |
| CVE-2026-41856 | Spring GraphQL Annotation Detection Vulnerability | HIGH | 7.5 | Jun 11, 2026 |
| CVE-2026-41700 | Cross-Site WebSocket Hijacking in Spring for GraphQL | HIGH | 8.1 | Jun 11, 2026 |
| CVE-2026-41699 | Unsafe Deserialization in Spring GraphQL | CRITICAL | 9.8 | Jun 11, 2026 |
| CVE-2023-34047 | Exposure of data and identity to wrong session in Spring for GraphQL | MEDIUM | 4.3 | Sep 20, 2023 |
Showing 1 to 9 of 9 CVEs