Description
admin/src/containers/InputModalStepperProvider/index.js in Strapi before 3.2.5 has unwanted /proxy?url= functionality.
Remediation
References
https://github.com/strapi/strapi/pull/8442
https://github.com/strapi/strapi/releases/tag/v3.2.5
Related Vulnerabilities
CVE-2015-9235 Vulnerability in npm package jsonwebtoken
CVE-2022-28355 Vulnerability in maven package org.scala-js:scalajs-library_2.12
CVE-2023-45818 Vulnerability in npm package tinymce
CVE-2022-21803 Vulnerability in npm package nconf
CVE-2016-10726 Vulnerability in maven package org.dspace:dspace-xmlui