Description
parse-server before 3.6.0 allows account enumeration.
Remediation
References
https://github.com/parse-community/parse-server/security/advisories/GHSA-8w3j-g983-8jh5
Related Vulnerabilities
CVE-2022-4742 Vulnerability in maven package org.webjars.npm:json-pointer
CVE-2020-7746 Vulnerability in maven package org.webjars.bowergithub.chartjs:chart.js
CVE-2022-38900 Vulnerability in maven package org.webjars.npm:decode-uri-component
CVE-2021-4264 Vulnerability in maven package org.webjars.npm:dustjs-linkedin