Critical
Low
Medium
CVE-2025-53092
Overview
Strapi is an open source headless content management system. Strapi versions prior to 5.20.0 contain a CORS misconfiguration vulnerability in default installations. By default, Strapi reflects the value of the Origin header back in the Access-Control-Allow-Origin response header without proper valid...
Critical
Low
Medium
No items found.