MEDIUM5.3Packagist
GHSA-589q-75r3-mfq4· BIT-silverstripe-2020-6165, CVE-2020-6165Silverstripe has Incorrect Default Permissions
Modified: 2/16/2024
package
pkg:packagist/silverstripe/graphql
Silverstripe has Incorrect Default Permissions
Modified: 2/16/2024
DDOS attack on graphql endpoints
Modified: 9/10/2026
Silverstripe CSRF Protection Bypass via GraphQL
Modified: 2/16/2024
View permissions are bypassed for paginated lists of ORM data
Modified: 2/16/2024
Authentication bypass in SilverStripe GraphQL
Modified: 2/17/2024
SilverStripe GraphQL Server permission checker not inherited by query subclass.
Modified: 2/16/2024
Silverstripe GraphQL has DDOS Vulnerability due to lack of protection against recursive queries
Modified: 9/10/2026
silverstripe/graphql Cross-Site Request Forgery vulnerability
Modified: 12/3/2024