Title: [Snyk] Security upgrade axios from 0.21.1 to 0.21.3 by snyk-bot · Pull Request #627 · secureCodeBox/secureCodeBox · GitHub
Open Graph Title: [Snyk] Security upgrade axios from 0.21.1 to 0.21.3 by snyk-bot · Pull Request #627 · secureCodeBox/secureCodeBox
X Title: [Snyk] Security upgrade axios from 0.21.1 to 0.21.3 by snyk-bot · Pull Request #627 · secureCodeBox/secureCodeBox
Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dependencies to a fixed version: parser-sdk/nodejs/package.json parser-sdk/nodejs/package-lock.json Vulnerabilities that will be fixed With an upgrade: Severity Priority Score (*) Issue Breaking Change Exploit Maturity 768/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.5 Regular Expression Denial of Service (ReDoS) SNYK-JS-AXIOS-1579269 No Proof of Concept (*) Note that the real score may have changed since the PR was raised. Commit messages Package name: axios The new version differs by 41 commits. e367be5 [Releasing] 0.21.3 83ae383 Correctly add response interceptors to interceptor chain (#4013) c0c8761 [Updating] changelog to include links to issues and contributors 619bb46 [Releasing] v0.21.2 82c9455 Create SECURITY.md (#3981) 5b45711 Security fix for ReDoS (#3980) 5bc9ea2 Update ECOSYSTEM.md (#3817) e72813a Fixing README.md (#3818) e10a027 Fix README typo under Request Config (#3825) e091491 Update README.md (#3936) b42fbad Removed un-needed bracket 520c8dc Updating CI status badge (#3953) 4fbeecb Adding CI on Github Actions. (#3938) e9965bf Fixing the sauce labs tests (#3813) dbc634c Remove charset in tests (#3807) 3958e9f Add explanation of cancel token (#3803) 69949a6 Adding custom return type support to interceptor (#3783) 49509f6 Create FUNDING.yml (#3796) 199c8aa Adding parseInt to config.timeout (#3781) 94fc4ea Adding isAxiosError typeguard documentation (#3767) 0ece97c Fixing quadratic runtime when setting a maxContentLength (#3738) a18a0ec Updating `lib/core/README.md` about Dispatching requests (#3772) 59fa614 [Updated] follow-redirects to the latest version (#3771) 7821ed2 Feat/json improvements (#3763) See the full diff Check the changes in this PR to ensure they won't cause issues with your project. Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: 🧐 View latest project report 🛠 Adjust project settings 📚 Read more about Snyk's upgrade and patch logic
Open Graph Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep...
X Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep...
Opengraph URL: https://github.com/secureCodeBox/secureCodeBox/pull/627
X: @github
Domain: github.com
| route-pattern | /:user_id/:repository/pull/:id/files(.:format) |
| route-controller | pull_requests |
| route-action | files |
| fetch-nonce | v2:81db98be-548b-c94f-21d4-a64a161ccb68 |
| current-catalog-service-hash | ae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b |
| request-id | E336:2C89E3:1FF1C97:2CFA220:6978F723 |
| html-safe-nonce | fcdcbfbecc4260b8f333b38f388cc51c2766bc9c916c4abe41c222a003baffab |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJFMzM2OjJDODlFMzoxRkYxQzk3OjJDRkEyMjA6Njk3OEY3MjMiLCJ2aXNpdG9yX2lkIjoiNDg2MzQ5NjMwMDc4NTE0OTc5IiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0= |
| visitor-hmac | f7fa64c18c39936b9fcab20a6c899e46dfde66baa7d5a60de07e84858ddfbebe |
| hovercard-subject-tag | pull_request:727460229 |
| github-keyboard-shortcuts | repository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | / |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/secureCodeBox/secureCodeBox/pull/627/files |
| twitter:image | https://avatars.githubusercontent.com/u/19733683?s=400&v=4 |
| twitter:card | summary_large_image |
| og:image | https://avatars.githubusercontent.com/u/19733683?s=400&v=4 |
| og:image:alt | Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep... |
| og:site_name | GitHub |
| og:type | object |
| hostname | github.com |
| expected-hostname | github.com |
| None | 6d9b384ce19e0ac9756580c70eae9a3359939e77ff05c731561090d13085b2b7 |
| turbo-cache-control | no-preview |
| diff-view | unified |
| go-import | github.com/secureCodeBox/secureCodeBox git https://github.com/secureCodeBox/secureCodeBox.git |
| octolytics-dimension-user_id | 34573705 |
| octolytics-dimension-user_login | secureCodeBox |
| octolytics-dimension-repository_id | 80711933 |
| octolytics-dimension-repository_nwo | secureCodeBox/secureCodeBox |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | false |
| octolytics-dimension-repository_network_root_id | 80711933 |
| octolytics-dimension-repository_network_root_nwo | secureCodeBox/secureCodeBox |
| turbo-body-classes | logged-out env-production page-responsive full-width |
| disable-turbo | true |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | 56ad33f6fdc0d0fb49c96b3c46ed74c55d926471 |
| ui-target | full |
| theme-color | #1e2327 |
| color-scheme | light dark |
Links:
Viewport: width=device-width