Apollographql / Apollo Router
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-43414 | Apollo Query Planner and Apollo Gateway may infinitely loop on sufficiently complex queries | HIGH | 8.7 | Aug 27, 2024 |
| CVE-2024-43783 | Apollo Router Coprocessors may cause Denial-of-Service when handling request bodies | HIGH | 8.7 | Aug 27, 2024 |
| CVE-2024-32971 | Defect in query plan cache may cause incorrect operations to be executed in Apollo Router | CRITICAL | 9.1 | May 2, 2024 |
| CVE-2024-28101 | Apollo Router's Compressed Payloads do not respect HTTP Payload Limits | HIGH | 7.5 | Mar 6, 2024 |
| CVE-2023-45812 | Improper Check or Handling of Exceptional Conditions in apollo-router | HIGH | 7.5 | Oct 18, 2023 |
| CVE-2023-41317 | Unnamed "Subscription" operation results in Denial-of-Service in apollographql/router | HIGH | 7.5 | Sep 5, 2023 |
Showing 1 to 6 of 6 CVEs