[Git][security-tracker-team/security-tracker][master] node-axios spu
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Thu Jan 30 19:08:51 GMT 2025
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a623d593 by Moritz Mühlenhoff at 2025-01-30T20:08:14+01:00
node-axios spu
- - - - -
2 changed files:
- data/CVE/list
- data/next-point-update.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -114,6 +114,7 @@ CVE-2025-0353 (The Divi Torque Lite \u2013 Best Divi Addon, Extensions, Modules
NOT-FOR-US: WordPress plugin
CVE-2024-57965 (In axios before 1.7.8, lib/helpers/isURLSameOrigin.js does not use a U ...)
- node-axios 1.7.9+dfsg-1 (bug #1094731)
+ [bookworm] - node-axios <no-dsa> (Minor issue)
NOTE: https://github.com/axios/axios/issues/6351
NOTE: https://github.com/axios/axios/commit/0a8d6e19da5b9899a2abafaaa06a75ee548597db (v1.7.8)
NOTE: https://github.com/axios/axios/pull/6714
=====================================
data/next-point-update.txt
=====================================
@@ -74,3 +74,5 @@ CVE-2024-5953
[bookworm] - 389-ds-base 2.3.1+dfsg1-1+deb12u1
CVE-2024-3657
[bookworm] - 389-ds-base 2.3.1+dfsg1-1+deb12u1
+CVE-2024-57965
+ [bookworm] - node-axios 1.2.1+dfsg-1+deb12u2
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a623d593658de636704882505a78dca762d19c5d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a623d593658de636704882505a78dca762d19c5d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250130/360f8a8a/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list