PKSA-yqpc-bjrb-6dq8 Security Advisory
-
[MEDIUM] CVE-2023-44401 View permissions are bypassed for paginated lists of ORM data in GraphQL queries
PKSA-yqpc-bjrb-6dq8 CVE-2023-44401 GHSA-jgph-w8rh-xf5p
Affected package: silverstripe/graphql
Affected version: >=4.0.0,<4.3.7|>=5.0.0,<5.1.3
Reported by:
GitHub, FriendsOfPHP/security-advisories