Skip to content

The dependency Axios has a security breach #86

@AwesomeCap

Description

@AwesomeCap

Dependencies:

prismarine-auth@2.3.0
      └─┬ @xboxreplay/xboxlive-auth@3.3.3
        └── axios@0.21.4

Axios versions from 0.8.1 through 1.5.1 are affected by a moderate severity Cross-Site Request Forgery (CSRF) vulnerability, and the issue has been patched in version 1.6.0.

I talked to Alexis B who have made Xboxreplay and he will try to update to a new 5.0.0 version asap

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions