Security Warning during CLI install
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-08-2021
09:02 AM
Hi,
While installing the data-access-platform-cli I received the following warning.
npm WARN deprecated axios@0.19.2: Critical security vulnerability fixed in v0.21.1. For more information, see https://github.com/axios/axios/pull/3410
I installed the latest version of the CLI (1.0.18), now uninstalled. I want to report this and ask if the axios fix will be included in the next version of the CLI?
Thank you.
Ross
Fixes vulnerability described in: https://snyk.io/vuln/SNYK-JS-AXIOS-1038255 Closes: Possible bug: Vulnerability SSRF #3407 Closes: Requests that follow a redirect are not passing via the proxy #3...