Merge pull request #108 from Hexastack/107-issue-ssrf-in-axios

fix(frontend): axios SSRF vulnerability
This commit is contained in:
Mohamed Marrouchi 2024-09-30 11:09:32 +01:00 committed by GitHub
commit 170eccc0f6
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
2 changed files with 5 additions and 6 deletions

View File

@ -26,7 +26,7 @@
"@projectstorm/react-canvas-core": "^7.0.3", "@projectstorm/react-canvas-core": "^7.0.3",
"@projectstorm/react-diagrams": "^7.0.4", "@projectstorm/react-diagrams": "^7.0.4",
"@types/qs": "^6.9.15", "@types/qs": "^6.9.15",
"axios": "^1.6.8", "axios": "^1.7.7",
"eazychart-css": "^0.2.1-alpha.0", "eazychart-css": "^0.2.1-alpha.0",
"eazychart-react": "^0.8.0-alpha.0", "eazychart-react": "^0.8.0-alpha.0",
"hexabot-widget": "*", "hexabot-widget": "*",

9
package-lock.json generated
View File

@ -35,7 +35,7 @@
"@projectstorm/react-canvas-core": "^7.0.3", "@projectstorm/react-canvas-core": "^7.0.3",
"@projectstorm/react-diagrams": "^7.0.4", "@projectstorm/react-diagrams": "^7.0.4",
"@types/qs": "^6.9.15", "@types/qs": "^6.9.15",
"axios": "^1.6.8", "axios": "^1.7.7",
"eazychart-css": "^0.2.1-alpha.0", "eazychart-css": "^0.2.1-alpha.0",
"eazychart-react": "^0.8.0-alpha.0", "eazychart-react": "^0.8.0-alpha.0",
"hexabot-widget": "*", "hexabot-widget": "*",
@ -3044,10 +3044,9 @@
} }
}, },
"node_modules/axios": { "node_modules/axios": {
"version": "1.7.4", "version": "1.7.7",
"resolved": "https://registry.npmjs.org/axios/-/axios-1.7.4.tgz", "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.7.tgz",
"integrity": "sha512-DukmaFRnY6AzAALSH4J2M3k6PkaC+MfaAGdEERRWcC9q3/TWQwLpHR8ZRLKTdQ3aBDL64EdluRDjJqKw+BPZEw==", "integrity": "sha512-S4kL7XrjgBmvdGut0sN3yJxqYzrDOnivkBiN0OFs6hLiUam3UPvswUo0kqGyhqUZGEOytHyumEdXsAkgCOUf3Q==",
"license": "MIT",
"dependencies": { "dependencies": {
"follow-redirects": "^1.15.6", "follow-redirects": "^1.15.6",
"form-data": "^4.0.0", "form-data": "^4.0.0",