-
Couldn't load subscription status.
- Fork 941
Open
Labels
enhancementNew feature or requestNew feature or request
Description
What would you like to be added?
upload-artifact/.licenses/npm/form-data.dep.yml
Lines 1 to 4 in 2848b2c
| --- | |
| name: form-data | |
| version: 4.0.0 | |
| type: npm |
Hi team, could you please bump the form-data dependency version to 4.0.4??
Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3, 4.0.0 - 4.0.3.
Why is this needed?
https://nvd.nist.gov/vuln/detail/CVE-2025-7783
Thank you :)
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or request