typesense-docsearch.js
typesense-docsearch.js copied to clipboard
Bump typesense-js (CVE-2023-45857)
Description
CSRF vulnerability affecting axios versions < 1.6.0.
typesense-docsearch-react
depends on "typesense": "^1.7.2"
which includes a vulnerable version of axios.
Steps to reproduce
Expected behavior
Update typesense-js
to >=1.8.0