Description
A denial of service exists in strapi v3.0.0-beta.18.3 and earlier that can be abused in the admin console using admin rights can lead to arbitrary restart of the application.
Remediation
References
https://hackerone.com/reports/768574
Related Vulnerabilities
CVE-2021-3827 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2021-25945 Vulnerability in npm package js-extend
CVE-2023-49487 Vulnerability in maven package com.jfinal:jfinal
CVE-2020-12725 Vulnerability in npm package redash
CVE-2021-28164 Vulnerability in maven package org.eclipse.jetty:jetty-webapp