html-validator icon indicating copy to clipboard operation
html-validator copied to clipboard

CVE-2023-45857 Axios vulnerability

Open scotty6435 opened this issue 1 year ago • 2 comments
trafficstars

https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-45857 was published on November 8th related to the axios dependency which in this project is very out of date.

The remediate, the current 0.27.2 version must be updated to 1.6.0

scotty6435 avatar Nov 27 '23 10:11 scotty6435

This is resolved in https://github.com/zrrrzzt/html-validator/pull/257 but the change is either faulty or there are other application changes needed to support this upgrade.

scotty6435 avatar Dec 05 '23 10:12 scotty6435

Came here with same issue

DmytroShalaiev avatar Apr 25 '24 09:04 DmytroShalaiev