Description
admin/src/containers/InputModalStepperProvider/index.js in Strapi before 3.2.5 has unwanted /proxy?url= functionality.
Remediation
References
https://github.com/strapi/strapi/pull/8442
https://github.com/strapi/strapi/releases/tag/v3.2.5
Related Vulnerabilities
CVE-2016-7103 Vulnerability in npm package jquery-ui
CVE-2018-20676 Vulnerability in maven package org.webjars.bowergithub.angular-ui:bootstrap
CVE-2020-10244 Vulnerability in maven package dev.paseto:jpaseto-impl
CVE-2023-43123 Vulnerability in maven package org.apache.storm:storm-client
CVE-2010-2227 Vulnerability in maven package tomcat:tomcat-coyote