Microsoft Graph vulnerabilities
2 known vulnerabilities affecting microsoft/graph.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2023-49282P4MEDIUMCVSS 5.3≥ 1.16.0, < 1.109.1≥ 2.0.0, < 2.0.12023-12-05
CVE-2023-49282 [MEDIUM] CWE-200 CVE-2023-49282: msgraph-sdk-php is the Microsoft Graph Library for PHP. The Microsoft Graph PHP SDK published packag
msgraph-sdk-php is the Microsoft Graph Library for PHP. The Microsoft Graph PHP SDK published packages which contained test code that enabled the use of the phpInfo() function from any application that could access and execute the file at vendor/microsoft/microsoft-graph/tests/GetPhpInfo.php. The phpInfo function exposes system information. The vuln
nvd
CVE-2023-49283P4MEDIUMCVSS 5.3fixed in 2.0.22023-12-05
CVE-2023-49283 [MEDIUM] CWE-200 CVE-2023-49283: microsoft-graph-core the Microsoft Graph Library for PHP. The Microsoft Graph Beta PHP SDK published
microsoft-graph-core the Microsoft Graph Library for PHP. The Microsoft Graph Beta PHP SDK published packages which contained test code that enabled the use of the phpInfo() function from any application that could access and execute the file at `vendor/microsoft/microsoft-graph-core/tests/GetPhpInfo.php`. The phpInfo function exposes system informa
nvd