grafana / pyroscope-nodejs

Pyroscope NodeJS integration
Apache License 2.0
26 stars 18 forks source link

Update axios version to a minimum of v1.6.4 #60

Closed sandeepdsvs closed 5 months ago

sandeepdsvs commented 5 months ago

Hi, Current version of axios used have some vulnerabilities reported by snyk. Would request you to update the version to a minimum of 1.6.4 to address them. Thank you. Will be waiting for your response.

simonswine commented 5 months ago

Axios v0.28.0 has those vulnerabilities fixed: https://github.com/axios/axios/releases/tag/v0.28.0