Description
admin/src/containers/InputModalStepperProvider/index.js in Strapi before 3.2.5 has unwanted /proxy?url= functionality.
Remediation
References
https://github.com/strapi/strapi/pull/8442
https://github.com/strapi/strapi/releases/tag/v3.2.5
Related Vulnerabilities
CVE-2023-26118 Vulnerability in npm package angular
CVE-2017-16008 Vulnerability in maven package org.webjars.bower:i18next
CVE-2021-39154 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2017-16038 Vulnerability in npm package f2e-server
CVE-2022-36077 Vulnerability in maven package org.webjars.npm:electron