Apollo Embedded Sandbox and Explorer vulnerable to CSRF via window.postMessage origin-validation bypass
High severity
GitHub Reviewed
Published
Sep 25, 2025
in
apollographql/embeddable-explorer
•
Updated Sep 29, 2025
Give feedback on Dependabot alerts