Skip to main content

CVE detail

CVE-2021-28661

Default SilverStripe GraphQL Server (aka silverstripe/graphql) 3.x through 3.4.1 permission checker not inherited by query subclass.

CVSS 4.3 · Medium