sloria / perspective-api-client

Node.js client for the Perspective API
https://www.perspectiveapi.com
MIT License
29 stars 9 forks source link

npm -> "high severity vulnerabilities" #161

Closed jojos38 closed 3 years ago

jojos38 commented 3 years ago

Hi, there is an issue currently with not using the latest axios lib

axios  <0.21.1
Severity: high
Server-Side Request Forgery - https://npmjs.com/advisories/1594
fix available via `npm audit fix --force`
Will install perspective-api-client@1.1.0, which is a breaking change
node_modules/axios
  perspective-api-client  >=2.0.0
  Depends on vulnerable versions of axios
  node_modules/perspective-api-client