CVE-2022-0764: Strapi

Medium severity, CVSS 6.7. EPSS: 0.7% chance of exploitation in the next 30 days.

Arbitrary Command Injection in GitHub repository strapi/strapi prior to 4.1.0.

Affected products

  • Strapi Strapi: before 4.1.0 (fixed in 4.1.0)

Published 2022-02-26. Last modified 2026-06-17.