[ 
https://issues.apache.org/jira/browse/UNOMI-783?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Francois Gerthoffert updated UNOMI-783:
---------------------------------------
    Description: 
There are quite a few vulnerabilities reported by dependabot and associated 
with GraphQL.

Since GraphQL is disabled by default( and GraphQL in beta stage), we've closed 
the associated PRs.

The objective of this story is to review and address vulnerabilities associated 
with the GraphQL portion of the Unomi codebase. 

  was:
There are quite a few vulnerabilities reported by dependabot and associated 
with GraphQL.

Since GraphQL is disabled by default, and GraphQL in beta stage), we've closed 
the associated PRs.

The objective of this story is to review and address vulnerabilities associated 
with the GraphQL portion of the Unomi codebase. 


> Address vulnerabilities around graphql
> --------------------------------------
>
>                 Key: UNOMI-783
>                 URL: https://issues.apache.org/jira/browse/UNOMI-783
>             Project: Apache Unomi
>          Issue Type: Task
>            Reporter: Francois Gerthoffert
>            Priority: Major
>             Fix For: unomi-2.6.0
>
>
> There are quite a few vulnerabilities reported by dependabot and associated 
> with GraphQL.
> Since GraphQL is disabled by default( and GraphQL in beta stage), we've 
> closed the associated PRs.
> The objective of this story is to review and address vulnerabilities 
> associated with the GraphQL portion of the Unomi codebase. 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to