UKHomeOfficeForms / hof

Bootstrap a HOF project
MIT License
15 stars 17 forks source link

HOFF 694 Upgrade notifications node client to 7.0.4 #444

Closed TemitopeAyokuHO closed 6 months ago

TemitopeAyokuHO commented 6 months ago

HOFF-694 Security upgrade notifications-node-client from 6.0.0 to 7.0.4

Why?

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 676/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 7.1
Cross-site Request Forgery (CSRF)
SNYK-JS-AXIOS-6032459
Yes Proof of Concept

How?

What?

Testing?

Screenshots (optional)

Anything Else? (optional)