Anon Ray

1 exploit Active since Jul 2019
CVE-2019-1020015 WRITEUP HIGH WRITEUP
graphql-engine <1.0.0-beta.3 - Auth Bypass
graphql-engine (aka Hasura GraphQL Engine) before 1.0.0-beta.3 mishandles the audience check while verifying JWT.
CVSS 7.5