Known vulnerabilities in Parse Community Parse Server 8.2.4

Vendor: Parse Community
Website: https://parseplatform.org/
Total Security Bulletins: 47

Security bulletins (47)

Secuity bulletin Severity Status Published
SB2026040762: Improper Neutralization of Special Elements in Data Query Logic in Parse Server Medium
Patched
07.04.2026
SB2026040760: SQL injection in Parse Server High
Patched
07.04.2026
SB2026040759: Improper access control in Parse Server Medium
Patched
07.04.2026
SB2026040758: Operation on a Resource after Expiration or Release in Parse Server Medium
Patched
07.04.2026
SB2026040757: Observable Response Discrepancy in Parse Server Medium
Patched
07.04.2026
SB2026040756: Information disclosure in Parse Server Medium
Patched
07.04.2026
SB2026040755: SQL injection in Parse Server Low
Patched
07.04.2026
SB2026040754: Race condition in Parse Server Medium
Patched
07.04.2026
SB2026040753: Improper Neutralization of Special Elements in Data Query Logic in Parse Server High
Patched
07.04.2026
SB2026040752: Function Call With Incorrect Order of Arguments in Parse Server Medium
Patched
07.04.2026
SB2026040749: Uncontrolled Recursion in Parse Server Medium
Patched
07.04.2026
SB2026040748: Uncontrolled Recursion in Parse Server Medium
Patched
07.04.2026
SB2026040747: Incorrect authorization in Parse Server Low
Patched
07.04.2026
SB2026040746: SQL injection in Parse Server Low
Patched
07.04.2026
SB2026040745: Time-of-check Time-of-use (TOCTOU) Race Condition in Parse Server Low
Patched
07.04.2026
SB2026040744: Information Exposure Through Timing Discrepancy in Parse Server Low
Patched
07.04.2026
SB2025122316: SSRF in Parse Server Instagram OAuth adapter Medium
Patched
23.12.2025
SB2025122315: Reflected XSS in Parse Server Low
Patched
23.12.2025
SB2025122314: Security restrictions bypass in Parse Server CI/CD infrastructure Medium
Patched
23.12.2025
SB2025110554: Denial of service via SSRF in Parse Server Medium
Patched
05.11.2025


Showing elements 1 - 20 out of 47