Skip to content

2 High Severity Vulnerabilities #5835

@Mu-Gee

Description

@Mu-Gee

Describe the bug
axios <1.8.2
Severity: high
axios Requests Vulnerable To Possible SSRF and Credential Leakage via Absolute URL

To Reproduce
Steps to reproduce the behavior:

  1. npm install
  2. npm audit

Expected behavior
Expected a clean install with all packages updated but some dependencies seem to depend on other that have been found to be vulnerable.

Environment (please complete the following information):

  • AdminLTE Version: [4.0.0-beta3]
  • Operating System: [Windows 10]
  • Browser (Version): [Chrome]

Additional context
node_modules/axios
bundlewatch *
Depends on vulnerable versions of axios
node_modules/bundlewatch

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions