Strawberry

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 6
    Known Exploited: 0
    1
    Critical Level Threats
    2
    High Level Threats
    2
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-47707

    Strawberry GraphQL's Bypass of MaxAliasesLimiter via Fragment Spreads leading to GraphQL Alias Amplification

    Last Modified: Jun 05, 2026
    Published: Jun 04, 2026

    CVE-2026-45739

    Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs

    Last Modified: Jun 05, 2026
    Published: Jun 04, 2026

    CVE-2026-47706

    Strawberry GraphQL has a Circular Fragment Reference DOS

    Last Modified: Jun 05, 2026
    Published: Jun 04, 2026

    CVE-2026-35523

    Authentication bypass in strawberry-graphql via legacy graphql-ws WebSocket subprotocol

    Last Modified: Apr 17, 2026
    Published: Apr 07, 2026

    CVE-2026-35526

    Strawberry GraphQL affected by a Denial of Service via unbounded WebSocket subscriptions

    Last Modified: Apr 17, 2026
    Published: Apr 07, 2026
    Items Per Page