QID 982618
QID 982618: Nodejs (npm) Security Update for strapi (GHSA-7frv-9phw-vrvr)
admin/src/containers/InputModalStepperProvider/index.js in Strapi before 3.2.5 has unwanted /proxy?url= functionality.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-7frv-9phw-vrvr for updates pertaining to this vulnerability.
Vendor References
- GHSA-7frv-9phw-vrvr -
github.com/advisories/GHSA-7frv-9phw-vrvr
CVEs related to QID 982618
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-7frv-9phw-vrvr | strapi |
|