Commit b668751
fix(deps): override axios to 1.15.0 to resolve critical SSRF vulnerability
Adds npm overrides entry to force axios>=1.15.0 across transitive
dependencies (jira.js, trello.js), resolving GHSA-3p68-rc4w-qgx5 and
GHSA-fvcv-3m26-pcqx that were failing the CI npm audit check.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>1 parent c0fc357 commit b668751
1 file changed
Lines changed: 2 additions & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
134 | 134 | | |
135 | 135 | | |
136 | 136 | | |
137 | | - | |
| 137 | + | |
| 138 | + | |
138 | 139 | | |
139 | 140 | | |
0 commit comments