Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

4 advisories

Loading
Unwanted access to the entire file system vulnerability due to a missing check in `staticFiles` HTTP handler Moderate
CVE-2025-27098 was published for @graphql-mesh/cli (npm) Feb 16, 2023
ardatan Credited to ardatan and dotansimha dotansimha dotansimha
ardatan Credited to ardatan and khell khell khell
GraphQL Modules has a Race Condition issue High
CVE-2026-23735 was published for graphql-modules (npm) Jan 16, 2026
DuckThom Credited to DuckThom, enisdenjo, and ardatan enisdenjo enisdenjo
ardatan ardatan
@envelop/graphql-modules has a Race Condition vulnerability High
GHSA-h3hw-29fv-2x75 was published for @envelop/graphql-modules (npm) Jan 21, 2026
DuckThom Credited to DuckThom, enisdenjo, and ardatan enisdenjo enisdenjo
ardatan ardatan
ProTip! Advisories are also available from the GraphQL API