VendorsParse Platformparse-server9.3.1
Vulnerabilities

Parse Platform Parseplatform Parse-server 9.3.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2026-27804
Parse Server: Account takeover via JWT algorithm confusion in Google auth adapter
Published 2026-02-25 · Analyzed
9.3EPSS 0.002
CVE-2026-30854
Parse Server: GraphQL `__type` introspection bypass via inline fragments when public introspection is disabled
Published 2026-03-07 · Analyzed
6.9EPSS 0.003