Known vulnerabilities in strapi.io strapi 3.2.4

Vendor: strapi.io
Website: https://strapi.io/
Total Security Bulletins: 11

Security bulletins (11)

Secuity bulletin Severity Status Published
SB2026042379: Weak Encoding for Password in strapi Low
Patched
23.04.2026
SB2026042377: Overly permissive cross-domain whitelist in strapi Medium
Patched
23.04.2026
SB2024061246: Open redirect in strapi Medium
Patched
12.06.2024
SB2024061245: Uncaught Exception in strapi Low
Patched
12.06.2024
SB2024061244: Improper access control in strapi Low
Patched
12.06.2024
SB2023091375: Improper access control in strapi Low
Patched
13.09.2023
SB2023091374: Multiple vulnerabilities in strapi Medium
Patched
13.09.2023
SB2023050328: Improper Authentication in Strapi High
Patched
03.05.2023
SB2023050327: Information disclosure in Strapi Medium
Patched Public exploit
03.05.2023
SB2022051306: Stored cross-site scripting in Strapi Low
Patched
13.05.2022
SB2020102615: Multiple vulnerabilities in Strapi High
Patched
26.10.2020