You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Description
Currently our team is using opentelemetry/exporter-collector, and our security audit is flagging this package as a high security vulnerability due to the axios version it uses:
│ high │ Server-Side Request Forgery │
│ Package │ axios │
│ Patched in │ >=0.21.1 │
│ Dependency of │ @opentelemetry/exporter-collector |
│ Path │ @opentelemetry/exporter-collector > axios |
│ More info │ https://www.npmjs.com/advisories/1594 |
I was hoping to get a timeframe on if/when this can be updated.
I've searched for any related issues and avoided creating a duplicate issue.
The text was updated successfully, but these errors were encountered:
Description
Currently our team is using opentelemetry/exporter-collector, and our security audit is flagging this package as a high security vulnerability due to the axios version it uses:
│ high │ Server-Side Request Forgery │
│ Package │ axios │
│ Patched in │ >=0.21.1 │
│ Dependency of │ @opentelemetry/exporter-collector |
│ Path │ @opentelemetry/exporter-collector > axios |
│ More info │ https://www.npmjs.com/advisories/1594 |
I was hoping to get a timeframe on if/when this can be updated.
I've searched for any related issues and avoided creating a duplicate issue.
The text was updated successfully, but these errors were encountered: