Skip to content

Commit

Permalink
package updates (#410)
Browse files Browse the repository at this point in the history
* package updates

* audit extension
  • Loading branch information
carrolp authored Oct 15, 2024
1 parent a9a2fc5 commit 97b57eb
Show file tree
Hide file tree
Showing 3 changed files with 351 additions and 215 deletions.
4 changes: 2 additions & 2 deletions audit-ci.json
Original file line number Diff line number Diff line change
Expand Up @@ -14,14 +14,14 @@
"GHSA-p8p7-x288-28g6": {
"active": true,
"notes": "The Request package through 2.88.2 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP)",
"expiry": "2024-10-04"
"expiry": "2025-01-14"
}
},
{
"GHSA-72xf-g2v4-qvf3": {
"active": true,
"notes": "The Request package (see above) requires tough-cookie at a vulnerable version.",
"expiry": "2024-10-04"
"expiry": "2025-01-14"
}
} ],
"skip-dev": true
Expand Down
Loading

0 comments on commit 97b57eb

Please sign in to comment.