absinthe_plug
1.5.10
Plug support for Absinthe, the GraphQL toolkit for Elixir
Current section
1 Advisory
Jump to
Current section
1 Advisory
Reflected XSS via backslash bypass in GraphiQL js_escape in absinthe_plug
Affected Versions
References
- https://cna.erlef.org/cves/CVE-2026-42794.html
- https://github.com/absinthe-graphql/absinthe_plug
- https://github.com/absinthe-graphql/absinthe_plug/commit/23a0d5658d32420086711adf4ce8f05febb09963
- https://github.com/absinthe-graphql/absinthe_plug/issues/275
- https://hex.pm/packages/absinthe_plug
- https://nvd.nist.gov/vuln/detail/CVE-2026-42794
- https://osv.dev/vulnerability/EEF-CVE-2026-42794
Checksum
Dependency Config
mix.exs
rebar.config
Gleam
erlang.mk
Package Details
this version
27 172
yesterday
1 929
last 7 days
52 761
all time
42 217 101