Skip to main content
Loading…
    CVE-2025-25298 — Strapi is an open source headless CMS. The @strapi/core package before version 5.10.3 does not enforce a maximum password length when using bcryptjs for password hashing. Bcryptjs ignores any bytes be — CVE Database · The Intelligence Room