Looking for the vulnerability index of Invicti's legacy products?
silverstripeCMS Incorrect Authorization Vulnerability (CVE-2021-28661) - Vulnerability Database

silverstripeCMS Incorrect Authorization Vulnerability (CVE-2021-28661)

Description

Default SilverStripe GraphQL Server (aka silverstripe/graphql) 3.x through 3.4.1 permission checker not inherited by query subclass.

References

Related Vulnerabilities