In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Allocation of Resources Without Limits or Throttling vulnerabilities in an interactive lesson.
Start learningUpgrade github.com/platform-mesh/kubernetes-graphql-gateway/gateway/gateway/endpoint to version 1.2.9 or higher.
Affected versions of this package are vulnerable to Allocation of Resources Without Limits or Throttling in the CreateHandler process, which lacks resource limits for query depth, complexity, response size, and rate limiting. An attacker can exhaust server CPU, memory, and bandwidth by submitting deeply nested or complex GraphQL queries, opening numerous subscription channels, or issuing many concurrent expensive requests. This can result in the backend becoming unresponsive and denying service to legitimate users.