Api-platform/core
This hub aggregates every CVE we track for Api-platform/core, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
0
Critical
3
High
0
In CISA KEV
Severity distribution
HIGH3MEDIUM3
Monthly trend
0
0
0
0
0
0
0
1
3
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-082026-07
Latest CVEs
The 6 most recently published vulnerabilities affecting Api-platform/core.
- CVE-2025-31485GraphQL grant on a property might be cached with different objects7.5
- CVE-2025-31481GraphQL query operations security can be bypassed7.5
- CVE-2023-47639API Platform Core can leak exceptions message that may contain sensitive information5.3
- CVE-2025-23204GraphQl securityAfterResolver not called4.4
- CVE-2023-25575Secured properties in API Platform Core may be accessible within collections7.7
- CVE-2019-1000011API Platform version from 2.2.0 to 2.3.5 contains an Incorrect Access Control vulnerability in GraphQL delete mutations that can result in a user authorized to delete a resource can delete any reso...6.5
Product normalization is registry-driven with AI assist and human review. How it works