graphql api vulns
API identify
{
"data": {
"__typename": "query"
}
} query IntrospectionQuery {
__schema {
queryType { name }
mutationType { name }
subscriptionType { name }
types {
...FullType
}
directives {
name
description
args {
...InputValue
}
onOperation
onFragment
onField
}
}
}Brute force login
CSRF for change mail grapql
Last updated