Ash-Project Ash Graphql

6 known vulnerabilities in Ash-Project Ash Graphql, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-82367 CVSS 2.3 low Exposure of Data Element to Wrong Session vulnerability in ash-project ash_graphql can deliver one subscription's resolved records to a…
  • CVE-2026-81643 CVSS 2.3 low Incorrect Authorization vulnerability in ash-project ash_graphql delivers GraphQL subscription payloads for records a subscriber is not…
  • CVE-2026-81636 CVSS 8.7 high Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_graphql allows an unauthenticated client to bypass…
  • CVE-2026-81633 CVSS 6.9 medium Improper Input Validation vulnerability in ash-project ash_graphql allows an unauthenticated client to crash a relay node(id: ...) query…
  • CVE-2026-80223 CVSS 7.1 high Incorrect Authorization vulnerability in ash-project ash_graphql allows an authenticated subscriber in one tenant to receive another…
  • CVE-2026-78693 CVSS 6.9 medium Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_graphql allows a remote client to read…