Skip to content

fix(cve): bump axios 1.17.0 to fix multiple cves#93

Merged
justintime4tea merged 1 commit into
mainfrom
justingross/VM-644-bump-axios-1-17-0
Jun 5, 2026
Merged

fix(cve): bump axios 1.17.0 to fix multiple cves#93
justintime4tea merged 1 commit into
mainfrom
justingross/VM-644-bump-axios-1-17-0

Conversation

@justintime4tea
Copy link
Copy Markdown
Contributor

@justintime4tea justintime4tea commented Jun 4, 2026

This bumps axios to 1.17.0 fixing multiple CVEs.

Ref: VM-644
Ref: VM-645
Ref: VM-646

This bumps axios to 1.17.0 fixing multiple CVEs.

- CVE-2026-44495
- CVE-2026-44494
- CVE-2026-44492

Ref: VM-644
Ref: VM-645
Ref: VM-646
@justintime4tea justintime4tea force-pushed the justingross/VM-644-bump-axios-1-17-0 branch from ae0fbb6 to 1cdb63f Compare June 4, 2026 20:22
@justintime4tea justintime4tea changed the title fix(cve): bump axios 1.17.0 to fix cve-2026-44495 fix(cve): bump axios 1.17.0 to fix multiple cves Jun 4, 2026
Copy link
Copy Markdown

@biblicalph biblicalph left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The pattern has been to remove axios from repos but it likely is a larger effort

@justintime4tea justintime4tea merged commit d165474 into main Jun 5, 2026
4 checks passed
@justintime4tea justintime4tea deleted the justingross/VM-644-bump-axios-1-17-0 branch June 5, 2026 17:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants