CVE-2026-47248 | parse-community parse-server up to 8.6.77/9.9.1-alpha.1 GraphQL Endpoint information exposure (GHSA-8cph-rgr4-g5vj / EUVD-2026-36534)

SecurityVulns

A vulnerability, which was classified as problematic, has been found in parse-community parse-server up to 8.6.77/9.9.1-alpha.1. Affected by this issue is some unknown functionality of the component GraphQL Endpoint. The manipulation leads to information exposure through error message.

This vulnerability is traded as CVE-2026-47248. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More