cldr-data-downloader
cldr-data-downloader copied to clipboard
Bump axios to 1.6.8
The current Axios version, 0.26.1, is vulnerable to CSRF attacks.
This PR fixes it by upgrading the Axios version to 1.6.8.
Checkmarx SCA references:
@rxaviers, Axios' API remains the same between the two versions. Upgrading to 1.6.8 should be safe and straightforward.
So that you know, the package-lock version has been upgraded to 3.
Could you please review it?
@rxaviers Any chance you could merge this PR and put out a new release?
@rxaviers - Can you please merge this PR and put out a new release ?
I am not actively maintaining it, thanks for the bumps, merging it now.