apollo-upload-server@4.0.1 vulnerabilities

Middleware and an Upload scalar to add support for GraphQL multipart requests (file uploads via queries and mutations) to various Node.js GraphQL servers.

  • latest version

    7.1.0

  • latest non vulnerable version

  • first published

    7 years ago

  • latest version published

    6 years ago

  • deprecated

    Package is deprecated

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the apollo-upload-server package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Denial of Service (DoS)

    apollo-upload-server is a Middleware and an Upload scalar to add support for GraphQL multipart requests (file uploads via queries and mutations) to various Node.js GraphQL servers.

    Note This package has been deprecated.

    Affected versions of this package are vulnerable to Denial of Service (DoS). The server would hang on unconsumed streams.

    How to fix Denial of Service (DoS)?

    Upgrade apollo-upload-server to version 7.0.0 or higher.

    <7.0.0
    • H
    Denial of Service (DoS)

    apollo-upload-server is a Middleware and an Upload scalar to add support for GraphQL multipart requests (file uploads via queries and mutations) to various Node.js GraphQL servers.

    Note This package has been deprecated.

    Affected versions of this package are vulnerable to Denial of Service (DoS). Malformed requests that have the operations field, without following map and file fields would crash the server.

    How to fix Denial of Service (DoS)?

    Upgrade apollo-upload-server to version 7.0.0 or higher.

    <7.0.0