Skip to content

Conversation

XTechnology-TR
Copy link
Owner

snyk-top-banner

Snyk has created this PR to fix 10 vulnerabilities in the npm dependencies of this project.

Snyk changed the following file(s):

  • package.json
  • package-lock.json

Vulnerabilities that will be fixed with an upgrade:

Issue Score
medium severity Server-side Request Forgery (SSRF)
SNYK-JS-AXIOS-9292519
  248  
high severity Cross-site Request Forgery (CSRF)
SNYK-JS-AXIOS-6032459
  207  
medium severity Server-side Request Forgery (SSRF)
SNYK-JS-AXIOS-9403194
  172  
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-AXIOS-1579269
  171  
high severity Improper Handling of Extra Parameters
SNYK-JS-FOLLOWREDIRECTS-6141137
  149  
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
  149  
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-AXIOS-1038255
  146  
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2332181
  120  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-AXIOS-6124857
  84  
low severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
  21  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Server-Side Request Forgery (SSRF)
🦉 Regular Expression Denial of Service (ReDoS)
🦉 Cross-site Request Forgery (CSRF)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

2 participants