Description
parse-server before 3.6.0 allows account enumeration.
Remediation
References
https://github.com/parse-community/parse-server/security/advisories/GHSA-8w3j-g983-8jh5
Related Vulnerabilities
CVE-2021-43306 Vulnerability in npm package jquery-validation
CVE-2022-40955 Vulnerability in maven package org.apache.inlong:sort-connector-mysql-cdc
CVE-2021-32659 Vulnerability in npm package matrix-appservice-bridge
CVE-2021-23381 Vulnerability in npm package killing
CVE-2020-28052 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on