CVE-2024-43414
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/08/2024
Last modified:
12/09/2024
Description
Apollo Federation is an architecture for declaratively composing APIs into a unified graph. Each team can own their slice of the graph independently, empowering them to deliver autonomously and incrementally. Instances of @apollo/query-planner >=2.0.0 and =2.0.0 and
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:apollographql:apollo-router:*:*:*:*:*:rust:*:* | 1.52.1 (excluding) | |
| cpe:2.3:a:apollographql:apollo_gateway:*:*:*:*:*:node.js:*:* | 2.0.0 (including) | 2.8.5 (excluding) |
| cpe:2.3:a:apollographql:apollo_helms-charts_router:*:*:*:*:*:*:*:* | 1.52.1 (excluding) | |
| cpe:2.3:a:apollographql:apollo_query-planner:*:*:*:*:*:node.js:*:* | 2.0.0 (including) | 2.8.5 (excluding) |
| cpe:2.3:a:apollographql:apollo_router:*:*:*:*:*:*:*:* | 1.52.1 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



