Skip to content

Add Socket patch for CVE-2025-27152 in pkg:npm/axios@0.18.0 - #10

Open
socket-security[bot] wants to merge 1 commit into
masterfrom
socket/autopatch-1787679801904-c7fc40cf
Open

Add Socket patch for CVE-2025-27152 in pkg:npm/axios@0.18.0#10
socket-security[bot] wants to merge 1 commit into
masterfrom
socket/autopatch-1787679801904-c7fc40cf

Conversation

@socket-security

Copy link
Copy Markdown

Summary

This PR updates Socket security patches for your dependencies.

These patches are applied via the Socket patch agent — .socket/manifest.json + a package.json postinstall hook.

Changes

  • Added: CVE-2025-27152 in pkg:npm/axios@0.18.0 (Socket Patch)
    • Severity: HIGH
    • Summary: axios Requests Vulnerable To Possible SSRF and Credential Leakage via Absolute URL

Testing

Review the patches and test your application to ensure compatibility.


🔒 Powered by Socket Security

Updates:
- 4 blob(s) added
- 0 blob(s) removed
- Manifest updated
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants