druv5319 / Sneaks-API

A StockX, FlightClub, Goat, and Stadium Goods API all in one. This sneaker API allows users to search sneakers and track and compare prices while providing additional info such as product links and images
438 stars 118 forks source link

Severe vulnerability #24

Open Nic-T opened 2 years ago

Nic-T commented 2 years ago

npm audit report

axios <0.21.1 Severity: high Server-Side Request Forgery - https://npmjs.com/advisories/1594
No fix available node_modules/axios sneaks-api * Depends on vulnerable versions of axios node_modules/sneaks-api

aberger7 commented 2 years ago

does it still work though?