Skip to content

Apollo Embedded Sandbox and Explorer vulnerable to CSRF via window.postMessage origin-validation bypass

High severity GitHub Reviewed Published Sep 25, 2025 in apollographql/embeddable-explorer • Updated Sep 29, 2025

No open alerts for this advisory

Give feedback on Dependabot alerts