Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 23 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hasura
Hasura graphql Engine |
|
| Vendors & Products |
Hasura
Hasura graphql Engine |
Mon, 22 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 22 Dec 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Hasura GraphQL 1.3.3 contains a denial of service vulnerability that allows attackers to overwhelm the service by crafting malicious GraphQL queries with excessive nested fields. Attackers can send repeated requests with extremely long query strings and multiple threads to consume server resources and potentially crash the GraphQL endpoint. | |
| Title | Hasura GraphQL 1.3.3 Denial of Service via Malicious GraphQL Query | |
| Weaknesses | CWE-770 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-22T21:56:34.955Z
Reserved: 2025-12-05T19:10:29.047Z
Link: CVE-2021-47713
Updated: 2025-12-22T21:56:30.452Z
Status : Undergoing Analysis
Published: 2025-12-22T22:15:58.720
Modified: 2025-12-23T14:51:52.650
Link: CVE-2021-47713
No data.
OpenCVE Enrichment
Updated: 2025-12-23T22:40:12Z