Our AWS vulnerability scanner has detected a high-severity vulnerability on a Lambda function that is currently running the latest version of this code. This vulnerability is associated with the axios library, which seems it is used as an HTTP client in Lambda function code.
https://nvd.nist.gov/vuln/detail/CVE-2024-39338
Could you let us know if any updates or patches are planned to address this vulnerability?
Affected packages name: axios
Installed version: 0:1.6.2
Fixed in version: / 1.7.4
Package manager: NODE
File path: **node_modules/axios/package.json**