Description
admin/src/containers/InputModalStepperProvider/index.js in Strapi before 3.2.5 has unwanted /proxy?url= functionality.
Remediation
References
https://github.com/strapi/strapi/releases/tag/v3.2.5
https://github.com/strapi/strapi/pull/8442
Related Vulnerabilities
CVE-2022-29078 Vulnerability in maven package org.webjars.npm:ejs
CVE-2018-7489 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2018-1287 Vulnerability in maven package org.apache.jmeter:apachejmeter
CVE-2023-22467 Vulnerability in maven package org.webjars.bowergithub.moment:luxon