Skip to content

Critical Vulnerability Due to Formidable <3.2.4 #136

Open
@domcorso-nib

Description

@domcorso-nib

When using sumo-logger we are seeing a critical vulnerability on formidable <3.2.4 which is a dependency of superagent:
GHSA-8cp3-66vr-3r4c

I've raised an issue with SuperAgent and they have updated to version 9 which now uses formidable@^3.5.1. This fixes the vulnerability report:
ladjs/superagent#1800

Is there any chance sumo-logger can be updated to use superagent@^9.0.1?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions