An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 0.4% on npmjs.org
Top 0.4% downloads on npmjs.org
Top 0.5% dependent packages on npmjs.org
Top 0.4% dependent repos on npmjs.org
Top 0.4% forks on npmjs.org
Top 0.6% docker downloads on npmjs.org

npmjs.org : @strapi/strapi

An open source headless CMS solution to create and manage your own API. It provides a powerful dashboard and features to make your life easier. Databases supported: MySQL, MariaDB, PostgreSQL, SQLite

Registry - Source - Homepage - JSON
purl: pkg:npm/%40strapi/strapi
Keywords: strapi , cms , cmf , content management system , content management framework , admin panel , dashboard , api , auth , framework , http , json , koa , koajs , helmet , mvc , oauth , oauth2 , orm , rest , restful , security , jam , jamstack , javascript , headless , MySQL , MariaDB , PostgreSQL , SQLite , graphqL , infrastructure , backend , open source , self hosted , lerna , lernajs , react , reactjs , cms-framework , content-management , content-management-system , customizable , graphql , hacktoberfest , headless-cms , koa2 , mysql , no-code , nodejs , typescript
License: ICU
Latest release: 4 months ago
First release: about 2 years ago
Namespace: strapi
Dependent packages: 110
Dependent repositories: 2,962
Downloads: 551,173 last month
Stars: 63,538 on GitHub
Forks: 8,065 on GitHub
Docker dependents: 192
Docker downloads: 229,710
Total Commits: 22983
Committers: 1074
Average commits per author: 21.399
Development Distribution Score (DDS): 0.847
More commit stats: commits.ecosyste.ms
See more repository details: repos.ecosyste.ms
Funding links: https://opencollective.com/strapi
Last synced: 4 months ago

High
GSA_kwCzR0hTQS1qanFmLWo0dzctOTJ3OM4AAy4n
Strapi leaking sensitive user information by filtering on private fields
Ecosystems: npm
Packages: @strapi/strapi
Source: github
Published: about 2 years ago
High
GSA_kwCzR0hTQS1nYzdwLWo1eG0teHhoMs4AA26o
Unauthorized Access to Private Fields in User Registration API
Ecosystems: npm
Packages: @strapi/strapi, @strapi/plugin-users-permissions
Source: github
Published: over 1 year ago
High
GSA_kwCzR0hTQS12Z2o3LTg5NWotZ3ByNs4AAgbK
Improper Removal of Sensitive Information Before Storage or Transfer in Strapi
Ecosystems: npm
Packages: @strapi/strapi, strapi
Source: github
Published: almost 3 years ago
High
GSA_kwCzR0hTQS1mNmZtLXIyNnEtcDc0N84AAgbL
Improper Removal of Sensitive Information Before Storage or Transfer in Strapi
Ecosystems: npm
Packages: @strapi/strapi, strapi
Source: github
Published: almost 3 years ago
High
GSA_kwCzR0hTQS1wOWZmLWo5OHYtcDQzNc4AA9QL
Strapi Server-Side Request Forgery (SSRF)
Ecosystems: npm
Packages: @strapi/strapi
Source: github
Published: 10 months ago
Moderate
GSA_kwCzR0hTQS1jaG1yLXJnMmYtOWptZs4AA04b
Making all attributes on a content-type public without noticing it
Ecosystems: npm
Packages: @strapi/database, @strapi/utils, @strapi/strapi
Source: github
Published: over 1 year ago
High
GSA_kwCzR0hTQS00cGhnLWhwcW0tYzNqNM4AAvGG
Strapi mishandles hidden attributes within admin API responses
Ecosystems: npm
Packages: @strapi/strapi, strapi
Source: github
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS00dm04LWo5NWYtajZ2Nc4AAtYF
Strapi 4.1.12 Cross-site Scripting via crafted file
Ecosystems: npm
Packages: @strapi/strapi
Source: github
Published: almost 3 years ago
High
GSA_kwCzR0hTQS04NXZnLWdycjUtcHc0Ms3dNw
Insecure password handling vulnerability in Strapi
Ecosystems: npm
Packages: @strapi/strapi, strapi
Source: github
Published: almost 3 years ago