CVE-2023-46942 Information

Description

Lack of authentication in NPM’s package @evershop/evershop before version 1.0.0-rc.8 allows remote attackers to obtain sensitive information via improper authorization in GraphQL endpoints.

Reference

https://devhub.checkmarx.com/cve-details/Cx00cea2d5-d2c5/ https://devhub.checkmarx.com/cve-details/CVE-2023-46942/

Share on: