Clarifai / clarifai-javascript

Official Clarifai JavaScript client for browsers and node.js
https://docs.clarifai.com
Other
351 stars 81 forks source link

Update axios dependency #37

Closed asjadjawed closed 5 years ago

asjadjawed commented 5 years ago

The axios package in use is outdated & vulnerable. Please update

Osunadev commented 5 years ago

What can we do in this scenario, because updating the axios package by itself will affect the way the clarifai API works, right?

willianwelbert commented 5 years ago

Also got axios as a vulnerability:

Captura de Tela 2019-08-05 às 18 09 13
Osunadev commented 5 years ago

Yeap, seems like we're taking the same Udemy course, rock on, dude!

rok-povsic commented 5 years ago

Hello, we've released a new version 2.9.1 where the range of the allowed axios versions has been relaxed to include the latest one.

Thanks for letting us know about this issue!