CVE-2026-30854 | parse-community parse-server up to 9.5.0-alpha.9 graphQLPublictrospection authorization (EUVD-2026-10171)
A vulnerability classified as problematic has been found in parse-community parse-server up to 9.5.0-alpha.9. Affected by this issue is some unknown functionality of the component graphQLPublictrospection. The manipulation leads to incorrect authorization.
This vulnerability is documented as CVE-2026-30854. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.