Skip to content

Commit

Permalink
Update audit-ci.json (#452)
Browse files Browse the repository at this point in the history
* Update audit-ci.json

* Update package-lock.json

* Update package-lock.json
  • Loading branch information
kdai7 authored Oct 8, 2024
1 parent c361387 commit f076c67
Show file tree
Hide file tree
Showing 2 changed files with 140 additions and 139 deletions.
4 changes: 2 additions & 2 deletions audit-ci.json
Original file line number Diff line number Diff line change
Expand Up @@ -14,14 +14,14 @@
"GHSA-p8p7-x288-28g6": {
"active": true,
"notes": "The Request package through 2.88.2 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server that does a cross-protocol redirect (HTTP to HTTPS, or HTTPS to HTTP)",
"expiry": "2024-10-04"
"expiry": "2025-01-14"
}
},
{
"GHSA-72xf-g2v4-qvf3": {
"active": true,
"notes": "The Request package (see above) requires tough-cookie at a vulnerable version.",
"expiry": "2024-10-04"
"expiry": "2025-01-14"
}
} ],
"skip-dev": true
Expand Down
Loading

0 comments on commit f076c67

Please sign in to comment.