HIGH8.6npm
GHSA-9xg4-3qfm-9w8f· CVE-2023-34235Leaking sensitive user information still possible by filtering on private with prefix fields
Modified: 11/8/2023
package
pkg:npm/%40strapi/utils
Leaking sensitive user information still possible by filtering on private with prefix fields
Modified: 11/8/2023
Making all attributes on a content-type public without noticing it
Modified: 11/8/2023
Strapi may leak sensitive user information, user reset password, tokens via content-manager views
Modified: 9/10/2026