By vendor

Parseplatform vulnerabilities

Known CVEs affecting Parseplatform products, prioritized by severity, with SEC.co remediation and detection guidance.

1 published vulnerability

  • CVE-2021-47986HIGH 7.5

    Parse Server versions before 4.10.0 contain a supply chain vulnerability caused by incorrect version tags pushed to the official repository. These tags pointed to unreviewed code residing in a personal developer fork rather than the main codebase. An attacker could exploit this by tricking developers into declaring one of these malicious version tags as a dependency, causing their builds to pull and execute potentially harmful code. The vulnerability exploits the trust developers place in official version numbers and repository tags.