Description
A denial of service exists in strapi v3.0.0-beta.18.3 and earlier that can be abused in the admin console using admin rights can lead to arbitrary restart of the application.
Recommendation
Update the strapi-admin package to the latest compatible version. Followings are version details:
- Affected version(s): <= 3.0.0-beta.18.3
- Patched version(s): 3.0.0-beta.18.4
References
Could your website be exposed too?
SmartScanner can check your website for Uncontrolled Resource Consumption in strapi and gives you actionable findings to investigate.
Start a free scanRelated Issues
- Uncontrolled Resource Consumption in fun-map - CVE-2020-7644
- Uncontrolled Resource Consumption in firebase - CVE-2020-7765
- Uncontrolled Resource Consumption in trim-newlines - CVE-2021-33623
- graphql Uncontrolled Resource Consumption vulnerability - CVE-2023-26144
You might also like:
See something that needs correcting? Let us knowUpdated November 27, 2023


