From 01769183f2eb0f56f06c13b98008115bdbd69996 Mon Sep 17 00:00:00 2001 From: Andrew Kuhnhausen Date: Fri, 17 Nov 2023 11:23:31 -0800 Subject: [PATCH 1/2] Security fix axios CVE-2023-45857 https://www.cve.org/CVERecord?id=CVE-2023-45857 Fixed in >= 1.6.0 --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index 74eba84..81d0960 100644 --- a/package.json +++ b/package.json @@ -29,7 +29,7 @@ }, "homepage": "https://github.com/PerimeterX/perimeterx-node-express#readme", "dependencies": { - "axios": "^0.21.1", + "axios": "^1.6.0", "cookie-parser": "^1.4.1", "perimeterx-node-core": "^3.11.0" }, From d58c9d3df3b7c2bdb86615393b23e7a693e5b25a Mon Sep 17 00:00:00 2001 From: Andrew Kuhnhausen Date: Fri, 17 Nov 2023 11:24:29 -0800 Subject: [PATCH 2/2] bump version --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index 81d0960..86a61c4 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "perimeterx-node-express", - "version": "7.8.0", + "version": "7.8.1", "description": "PerimeterX Express.js middleware to monitor and block traffic according to PerimeterX risk score", "main": "index.js", "directories": {