apollographql/graphql-upload

apollographql/graphql-upload

Releases33
Frequency1 month 6 days
Last Release
Middleware and an Upload scalar to add support for GraphQL multipart requests (file uploads via queries and mutations) to various Node.js GraphQL servers.

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
= 13.0.09.8 CRITICAL7.5 HIGH

An arbitrary file upload vulnerability in the file upload module of Graphql-upload v13.0.0 allows attackers to execute arbitrary code via a crafted filename.