Skip to content

bitbox-sdk >=1.8.1 Depends on vulnerable versions of axios #199

@salemkode

Description

@salemkode
# npm audit report

axios  <0.21.1
Severity: high
Server-Side Request Forgery - https://npmjs.com/advisories/1594
fix available via `npm audit fix --force`
Will install bitbox-sdk@0.0.1, which is a breaking change
node_modules/axios
  bitbox-sdk  >=1.8.1
  Depends on vulnerable versions of axios
  node_modules/bitbox-sdk

2 high severity vulnerabilities

To address all issues (including breaking changes), run:
  npm audit fix --force

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions