Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

fix(deps): update dependency axios to v0.21.2 [security] #430

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
renovate wants to merge 1 commit into master
base: master
Choose a base branch
Loading
from renovate/npm-axios-vulnerability

Conversation

@renovate
Copy link

@renovate renovate bot commented Aug 6, 2024
edited
Loading

This PR contains the following updates:

Package Change Age Confidence
axios (source) 0.21.1 -> 0.21.2 age confidence

Warning

Some dependencies could not be looked up. Check the warning logs for more information.

GitHub Vulnerability Alerts

CVE-2021-3749

axios before v0.21.2 is vulnerable to Inefficient Regular Expression Complexity.


Release Notes

axios/axios (axios)

v0.21.2

Compare Source

Fixes and Functionality:
  • Updating axios requests to be delayed by pre-emptive promise creation (#​2702)
  • Adding "synchronous" and "runWhen" options to interceptors api (#​2702)
  • Updating of transformResponse (#​3377)
  • Adding ability to omit User-Agent header (#​3703)
  • Adding multiple JSON improvements (#​3688, #​3763)
  • Fixing quadratic runtime and extra memory usage when setting a maxContentLength (#​3738)
  • Adding parseInt to config.timeout (#​3781)
  • Adding custom return type support to interceptor (#​3783)
  • Adding security fix for ReDoS vulnerability (#​3980)
Internal and Tests:
  • Updating build dev dependancies (#​3401)
  • Fixing builds running on Travis CI (#​3538)
  • Updating follow rediect version (#​3694, #​3771)
  • Updating karma sauce launcher to fix failing sauce tests (#​3712, #​3717)
  • Updating content-type header for application/json to not contain charset field, according do RFC 8259 (#​2154)
  • Fixing tests by bumping karma-sauce-launcher version (#​3813)
  • Changing testing process from Travis CI to GitHub Actions (#​3938)
Documentation:
  • Updating documentation around the use of AUTH_TOKEN with multiple domain endpoints (#​3539)
  • Remove duplication of item in changelog (#​3523)
  • Fixing gramatical errors (#​2642)
  • Fixing spelling error (#​3567)
  • Moving gitpod metion (#​2637)
  • Adding new axios documentation website link (#​3681, #​3707)
  • Updating documentation around dispatching requests (#​3772)
  • Adding documentation for the type guard isAxiosError (#​3767)
  • Adding explanation of cancel token (#​3803)
  • Updating CI status badge (#​3953)
  • Fixing errors with JSON documentation (#​3936)
  • Fixing README typo under Request Config (#​3825)
  • Adding axios-multi-api to the ecosystem file (#​3817)
  • Adding SECURITY.md to properly disclose security vulnerabilities (#​3981)

Huge thanks to everyone who contributed to this release via code (authors listed below) or via reviews and triaging on GitHub:


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot changed the title (削除) fix(deps): update dependency axios to v0.21.2 [security] (削除ここまで) (追記) fix(deps): update dependency axios to v0.21.2 [security] - autoclosed (追記ここまで) Dec 8, 2024
@renovate renovate bot closed this Dec 8, 2024
@renovate renovate bot deleted the renovate/npm-axios-vulnerability branch December 8, 2024 18:57
@renovate renovate bot changed the title (削除) fix(deps): update dependency axios to v0.21.2 [security] - autoclosed (削除ここまで) (追記) fix(deps): update dependency axios to v0.21.2 [security] (追記ここまで) Dec 8, 2024
@renovate renovate bot reopened this Dec 8, 2024
@renovate renovate bot force-pushed the renovate/npm-axios-vulnerability branch from 1494abe to 00de75f Compare December 8, 2024 22:08
@renovate renovate bot force-pushed the renovate/npm-axios-vulnerability branch from 00de75f to e710120 Compare September 13, 2025 02:59
@renovate renovate bot changed the title (削除) fix(deps): update dependency axios to v0.21.2 [security] (削除ここまで) (追記) fix(deps): update dependency axios to v1 [security] (追記ここまで) Sep 13, 2025
@renovate renovate bot force-pushed the renovate/npm-axios-vulnerability branch from e710120 to d7dd3d8 Compare September 29, 2025 23:26
@renovate renovate bot changed the title (削除) fix(deps): update dependency axios to v1 [security] (削除ここまで) (追記) fix(deps): update dependency axios to v0.21.2 [security] (追記ここまで) Sep 29, 2025
@renovate renovate bot force-pushed the renovate/npm-axios-vulnerability branch from d7dd3d8 to bb89e97 Compare September 30, 2025 05:29
@renovate renovate bot changed the title (削除) fix(deps): update dependency axios to v0.21.2 [security] (削除ここまで) (追記) fix(deps): update dependency axios to v0.30.2 [security] (追記ここまで) Sep 30, 2025
@renovate renovate bot changed the title (削除) fix(deps): update dependency axios to v0.30.2 [security] (削除ここまで) (追記) fix(deps): update dependency axios to v0.21.2 [security] (追記ここまで) Oct 16, 2025
@renovate renovate bot force-pushed the renovate/npm-axios-vulnerability branch from bb89e97 to bda03b3 Compare October 16, 2025 00:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Reviewers

No reviews

Assignees

No one assigned

Labels

None yet

Projects

None yet

Milestone

No milestone

Development

Successfully merging this pull request may close these issues.

0 participants

AltStyle によって変換されたページ (->オリジナル) /