awslabs/aws-crt-nodejs

upgrade axios to ^1.6.4

Closed this issue · 1 comments

Describe the feature

Please upgrade to 1.6.4 or higher version.

Use Case

axios in 1.6.0 is vulnerable to Prototype Pollution via the formDataToJSON function.
The vulnerability is reported in the following pages.
https://security.snyk.io/vuln/SNYK-JS-AXIOS-6144788

Proposed Solution

No response

Other Information

No response

Acknowledgements

  • I may be able to implement this feature request
  • This feature might incur a breaking change
jmklix commented

Thanks for pointing this out. Testing this PR