johnpapa / lite-server

Lightweight node server
MIT License
2.32k stars 268 forks source link

Bump browser-sync from 2.29.3 to v3.0.2 Resolves #192 #220

Open PseudoNinja opened 6 months ago

PseudoNinja commented 6 months ago

Resolves #192 - Vulnerabiltiy

Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host or IP address.