5.3 MEDIUM
- CVSS version: 3.1
- Attack vector (AV):
- Attack complexity (AC):
- Privileges required (PR):
- User interaction (UI):
- Scope (S):
- Confidentiality impact (C):
- Integrity impact (I):
- Availability impact (A):
by @LeSuisse Activity log
- Created automatic suggestion
-
@LeSuisse
removed
45 packages
- mprime
- primecount
- primesieve
- prime-server
- courier-prime
- CuboCore.libcprime
- quartus-prime-lite
- rubyPackages.prime
- dolphin-emu-primehack
- haskellPackages.primes
- rubyPackages_3_1.prime
- rubyPackages_3_2.prime
- rubyPackages_3_3.prime
- rubyPackages_3_4.prime
- rubyPackages_3_5.prime
- haskellPackages.nth-prime
- python312Packages.msprime
- python312Packages.primepy
- python312Packages.primer3
- python313Packages.msprime
- python313Packages.primepy
- python313Packages.primer3
- haskellPackages.antiprimes
- haskellPackages.primecount
- haskellPackages.primesieve
- perlPackages.MathPrimeUtil
- akkuPackages.chibi-math-prime
- haskellPackages.prelude-prime
- perl538Packages.MathPrimeUtil
- perl540Packages.MathPrimeUtil
- perlPackages.MathPrimeUtilGMP
- perlPackages.MathProvablePrime
- python312Packages.primecountpy
- python313Packages.primecountpy
- haskellPackages.opentheory-prime
- perl538Packages.MathPrimeUtilGMP
- perl540Packages.MathPrimeUtilGMP
- rubyPackages.jekyll-theme-primer
- perl538Packages.MathProvablePrime
- perl540Packages.MathProvablePrime
- rubyPackages_3_1.jekyll-theme-primer
- rubyPackages_3_2.jekyll-theme-primer
- rubyPackages_3_3.jekyll-theme-primer
- rubyPackages_3_4.jekyll-theme-primer
- rubyPackages_3_5.jekyll-theme-primer
- @LeSuisse dismissed
birkir prime GraphQL Directive graphql denial of service
A vulnerability has been found in birkir prime up to 0.4.0.beta.0. The affected element is an unknown function of the file /graphql of the component GraphQL Directive Handler. The manipulation leads to denial of service. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
References
- VDB-341766 | birkir prime GraphQL Directive graphql denial of service vdb-entry
- VDB-341766 | CTI Indicators (IOB, IOC, TTP, IOA) signature permissions-required
- Submit #731103 | birkir prime <=0.4.0 Graphql Directive Overloading Vulnerability third-party-advisory
- https://github.com/birkir/prime/issues/543 issue-tracking exploit
- https://github.com/birkir/prime/issues/543 issue-tracking exploit
- VDB-341766 | birkir prime GraphQL Directive graphql denial of service vdb-entry
- VDB-341766 | CTI Indicators (IOB, IOC, TTP, IOA) signature permissions-required
- Submit #731103 | birkir prime <=0.4.0 Graphql Directive Overloading Vulnerability third-party-advisory
Affected products
- ==0.4.0.beta