CVE-2026-33498 | parse-community parse-server up to 8.6.54/9.6.0-alpha.43 HTTP Request recursion (GHSA-9fjp-q3c4-6w3j)
A vulnerability described as problematic has been identified in parse-community parse-server up to 8.6.54/9.6.0-alpha.43. This issue affects some unknown processing of the component HTTP Request Handler. Executing a manipulation can lead to uncontrolled recursion.
This vulnerability is registered as CVE-2026-33498. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.