| CVE-2022-31367 |
unknown |
— |
— |
4y ago |
Strapi mishandles hidden attributes within admin API responses |
|
| CVE-2022-29894 |
unknown |
— |
— |
4y ago |
Cross-site Scripting in Strapi |
|
| CVE-2020-13961 |
unknown |
— |
— |
4y ago |
Improper Input Validation in strapi |
|
| CVE-2022-30618 |
unknown |
— |
— |
4y ago |
Improper Removal of Sensitive Information Before Storage or Transfer in Strapi |
|
| CVE-2022-30617 |
unknown |
— |
— |
4y ago |
Improper Removal of Sensitive Information Before Storage or Transfer in Strapi |
|
| CVE-2021-46440 |
unknown |
— |
— |
4y ago |
Insecure password handling vulnerability in Strapi |
|
| CVE-2022-27263 |
unknown |
— |
— |
4y ago |
Unrestricted Upload of File with Dangerous Type in Strapi |
|
| CVE-2022-0764 |
unknown |
— |
— |
4y ago |
Command injection in strapi |
|
| CVE-2019-19609 |
unknown |
— |
— |
5y ago |
Command Injection in strapi |
|
| CVE-2021-28128 |
unknown |
— |
— |
5y ago |
Weak Password Recovery Mechanism for Forgotten Password in Strapi |
|
| CVE-2020-27664 |
unknown |
— |
— |
5y ago |
Authorization bypass in Strapi |
|
| CVE-2019-18818 |
unknown |
— |
— |
7y ago |
Strapi allows unauthenticated attacker to reset admin password without valid reset token |
|