CVE-2024-40094
July 30, 2024, 1:32 p.m.
Tags
Product(s) Impacted
GraphQL Java (graphql-java)
- before 21.5
- 20.9
- 19.11
Description
GraphQL Java (aka graphql-java) before 21.5 does not properly consider ExecutableNormalizedFields (ENFs) as part of preventing denial of service via introspection queries. 20.9 and 19.11 are also fixed versions.
Weaknesses
Date
Published: July 30, 2024, 7:15 a.m.
Last Modified: July 30, 2024, 1:32 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
https://github.com/
cve@mitre.org
https://github.com/
cve@mitre.org
https://github.com/
cve@mitre.org
https://github.com/
cve@mitre.org
https://github.com/
cve@mitre.org
https://github.com/
cve@mitre.org