apollographql
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 10 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 5, 2023 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
No CWE data available
Most Affected Products
Recent Vulnerabilities
See more →Missing Host Header Validation in Apollo MCP Server for Localhost Deployments
Apollo Server is vulnerable to denial of service with `startStandaloneServer`
Apollo Gateway Query Planner Vulnerable to Excessive Resource Consumption via Optimization Bypass
Apollo Gateway Query Planner Vulnerable to Excessive Resource Consumption via Named Fragment Expansion
Apollo Query Planner and Apollo Gateway may infinitely loop on sufficiently complex queries
Apollo Router Coprocessors may cause Denial-of-Service when handling request bodies
Apollo Router's Compressed Payloads do not respect HTTP Payload Limits
XSS in @apollo/experimental-nextjs-app-support
Improper Check or Handling of Exceptional Conditions in apollo-router
Unnamed "Subscription" operation results in Denial-of-Service in apollographql/router
Monitor apollographql in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.