3 Total advisories
3 Vulnerabilities
0 Malware
Dependency scanning
Check whether @strapi/utils is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 5.8
CVE-2023-36472
Strapi may leak sensitive user information, user reset password, tokens via content-manager views
HIGH 8.6
CVE-2023-34235
Leaking sensitive user information still possible by filtering on private with prefix fields
MEDIUM 4.8
CVE-2023-34093
Making all attributes on a content-type public without noticing it
Browse more npm advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes