CVE-2025-3930: Strapi is vulnerable to Insufficient Session Expiration
N/A
CVSS Score
Basic Information
CVE ID
GHSA ID
EPSS Score
0.20129%
CWE
Published
10/16/2025
Updated
10/16/2025
KEV Status
No
Technology
JavaScript
Technical Details
CVSS Vector
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| @strapi/strapi | npm | < 5.24.1 | 5.24.1 |