Skip to content

chore: fixed axios vulnerability by upgrading 1.7.4 to 1.8.3#1078

Merged
tiwarishubham635 merged 3 commits intotwilio:mainfrom
sujay-neglur:upgrade-axios
Apr 14, 2025
Merged

chore: fixed axios vulnerability by upgrading 1.7.4 to 1.8.3#1078
tiwarishubham635 merged 3 commits intotwilio:mainfrom
sujay-neglur:upgrade-axios

Conversation

@sujay-neglur
Copy link
Copy Markdown
Contributor

@sujay-neglur sujay-neglur commented Mar 19, 2025

Fixes

this fixes recent vulnerabilities:

  1. GHSA-jr5f-v2jv-69x6
  2. https://security.snyk.io/vuln/SNYK-JS-AXIOS-9403194
    wherein axios requests are vulnerable to ssrf and credential leakage

Checklist

  • I acknowledge that all my contributions will be made under the project's license
  • I have made a material change to the repo (functionality, testing, spelling, grammar)
  • I have read the Contribution Guidelines and my PR follows them
  • I have titled the PR appropriately
  • I have updated my branch with the main branch
  • I have added tests that prove my fix is effective or that my feature works
  • I have added the necessary documentation about the functionality in the appropriate .md file
  • I have added inline documentation to the code I modified

If you have questions, please file a support ticket, or create a GitHub Issue in this repository.

@tiwarishubham635 tiwarishubham635 changed the title chore: fixed axios vulnerability by upgrading 1.7.4 to 1.8.2 chore: fixed axios vulnerability by upgrading 1.7.4 to 1.8.3 Apr 14, 2025
@tiwarishubham635 tiwarishubham635 merged commit d2fafb3 into twilio:main Apr 14, 2025
11 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants