Skip to content

HIGH Security vulnerability found in latest version #38

@vladdurdevic

Description

@vladdurdevic

Our AWS vulnerability scanner has detected a high-severity vulnerability on a Lambda function that is currently running the latest version of this code. This vulnerability is associated with the axios library, which seems it is used as an HTTP client in Lambda function code.

https://nvd.nist.gov/vuln/detail/CVE-2024-39338

Could you let us know if any updates or patches are planned to address this vulnerability?

Affected packages name:  axios
Installed version: 0:1.6.2
Fixed in version:   / 1.7.4
Package manager: NODE
File path: **node_modules/axios/package.json**

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions