forked from winstonjs/node-loggly
-
Notifications
You must be signed in to change notification settings - Fork 23
CVE-2025-27152 - SSRF in Axios #85
Copy link
Copy link
Open
Description
Our team is running into npm audit warnings about axios versions 1.0.0 - 1.8.1 being vulnerable. The latest version of node-loggly-bulk is using version 1.7.4.
Links:
The changes in #84 should resolve this. Would it be possible to get that PR merged and a new version published?
I'm happy to make changes to the PR if necessary. Thanks in advance!
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels