sendgrid-nodejs icon indicating copy to clipboard operation
sendgrid-nodejs copied to clipboard

Server-Side Request Forgery in axios - version update needed

Open Lexiel46 opened this issue 6 months ago • 2 comments

The npm package axios, versions 1.3.2 to 1.7.3, has been reported to have a high-severity vulnerability - Server-Side Request Forgery.

sendgrid-client is currently configured with axios 1.6.8 image

To avoid using vulnerable versions of axios, I suggest updating axios to the lastest version, 1.7.4.

Lexiel46 avatar Aug 18 '24 23:08 Lexiel46