CVE-2026-107376

CVE-2026-107376 published: webonyx graphql-php is a PHP implementation of the GraphQL specification. Prior to 15.32.3, GraphQL\Language\Parser performs recursive descent without a recursion limit in parseSelectionSet, parseValueLiteral, and parseTypeReference. A remote attacker can s...

View full NVD advisory → ← Back to CVE watch