PatchSiren

Gato GraphQL CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Gato GraphQL CVE published 2026-09-11

CVE-2026-62102

A vulnerability in Gato GraphQL plugin versions <= 19.2.3 allows for subscriber privilege escalation. The CVE record was published on 2026-09-11T19:17:43.073Z and has not been modified since then. The NVD entry is currently Deferred.