cdk8s-team / cdk8s-cli

Apache License 2.0
38 stars 23 forks source link

[MEDIUM] Axios Cross-Site Request Forgery Vulnerability #1642

Closed cdk8s-automation closed 1 month ago

cdk8s-automation commented 10 months ago

Github reported a new dependabot security alert at: https://github.com/cdk8s-team/cdk8s-cli/security/dependabot/14

iliapolo commented 1 month ago

Stale

daisuke-yoshimoto commented 1 month ago

@iliapolo

It appears that the [MEDIUM] CVE-2023-45857 vulnerability is still detected even with the latest version (2.198.175).

iliapolo commented 1 week ago

@daisuke-yoshimoto Is this still relevant? I don't see any CVEs in this repo