Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
npm audit report
axios <=0.21.1
Severity: high
axios Inefficient Regular Expression Complexity vulnerability - GHSA-cph5-m8f7-6c5x Axios vulnerable to Server-Side Request Forgery - GHSA-4w2v-q235-vp99 Depends on vulnerable versions of follow-redirects No fix available
node_modules/poeditor-ci/node_modules/axios
poeditor-ci *
Depends on vulnerable versions of axios
node_modules/poeditor-ci
follow-redirects <=1.14.7
Severity: high
Exposure of Sensitive Information to an Unauthorized Actor in follow-redirects - GHSA-pw2r-vq6v-hr8c Exposure of sensitive information in follow-redirects - GHSA-74fj-2j2h-c42q No fix available
node_modules/poeditor-ci/node_modules/follow-redirects
axios <=0.21.1
Depends on vulnerable versions of follow-redirects
node_modules/poeditor-ci/node_modules/axios
poeditor-ci *
Depends on vulnerable versions of axios
node_modules/poeditor-ci
-> there would be newer versions of axios, but they contain breaking changes which would first need to be checked against the code base.