CVE-2026-32621 | apollo federation-internals/gateway/query-planner up to 2.9.5/2.10.4/2.11.5/2.12.2/2.13.1 prototype pollution
A vulnerability was found in apollo federation-internals, gateway and query-planner up to 2.9.5/2.10.4/2.11.5/2.12.2/2.13.1. It has been classified as critical. Affected by this issue is some unknown functionality. This manipulation causes improperly controlled modification of object prototype attributes.
This vulnerability is registered as CVE-2026-32621. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.