WRITEUP #6060
GraphQL abuse: Bypass account level permissions through parameter smuggling
APIGraphQLPrivilege escalation
by@jon_bottarini(Jon Bottarini)
Program
New Relic
Published
Mar 14, 2018
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://labs.detectify.com/2018/03/14/graphql-abuse/