unfetch icon indicating copy to clipboard operation
unfetch copied to clipboard

Vulnerability in Node-Fetch

Open robreinhard opened this issue 2 years ago • 1 comments

There is a vulnerability in node-fetch, please considering upgrading of package high priority:

https://github.com/developit/unfetch/pull/154 https://nvd.nist.gov/vuln/detail/CVE-2022-0235 https://huntr.dev/bounties/d26ab655-38d6-48b3-be15-f9ad6b6ae6f7/

@developit

robreinhard avatar Jan 25 '22 17:01 robreinhard

Any updates on this?

dalhaan avatar May 04 '22 04:05 dalhaan

Any updates on this? Looks like there's an open PR for this https://github.com/developit/unfetch/pull/156

Eliza-Huang avatar Dec 06 '22 19:12 Eliza-Huang

This is fixed as of isomorphic-unfetch 4.0.1.

developit avatar Dec 31 '22 04:12 developit