CyberSource / CyberSource/cybersource-rest-client-node
Axios <1.7.4 vulnerability causing builds using package to fail
Open
Nobody has claimed this yet.
- Dominant language
- JavaScript
- Stars
- 49
- Forks
- 50
- Avg merge
- 18m
- Merged PRs (30d)
- 2
Description
Currently using 0.0.59. Axios vulnerabily causing builds to fail. Unfortunately, reducing the version creates more issues. Currently, the Axios version is locked at 1.6.4
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
No file or test is named; start by locating the Axios dependency declaration in the package and reproduce the failing build. Update the locked Axios version to a release at or above 1.7.4, then verify that the package builds successfully without introducing the reported compatibility issues.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- javascript
- Domain
- api
- Issue type
- Bug
- Difficulty
- 3/5
- Estimated time
- Half a day
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100