Skip to content

chore: fixed axios vulnerability by upgrading 1.7.4 to 1.8.2 - #1432

Merged
tiwarishubham635 merged 1 commit into
sendgrid:mainfrom
sujay-neglur:upgrade-axios
Apr 7, 2025
Merged

chore: fixed axios vulnerability by upgrading 1.7.4 to 1.8.2#1432
tiwarishubham635 merged 1 commit into
sendgrid:mainfrom
sujay-neglur:upgrade-axios

Conversation

@sujay-neglur

Copy link
Copy Markdown
Contributor

Fixes

this fixes recent GHSA-jr5f-v2jv-69x6 wherein axios requests are vulnerable to ssrf and credential leakage

Checklist

  • I acknowledge that all my contributions will be made under the project's license
  • I have made a material change to the repo (functionality, testing, spelling, grammar)
  • I have read the Contribution Guidelines and my PR follows them
  • I have titled the PR appropriately
  • I have updated my branch with the main branch
  • I have added tests that prove my fix is effective or that my feature works
  • I have added the necessary documentation about the functionality in the appropriate .md file
  • I have added inline documentation to the code I modified

If you have questions, please file a support ticket.

@xiaolongkipsi

Copy link
Copy Markdown

can this be reviewed and merged please? This security Severity High 7.7/ 10

@tiwarishubham635
tiwarishubham635 merged commit fce2db8 into sendgrid:main Apr 7, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants