Skip to content

Conversation

graymalkin77
Copy link

snyk-top-banner

Snyk has created this PR to upgrade axios from 1.8.3 to 1.12.2.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 7 versions ahead of your current version.

  • The recommended version was released 22 days ago.


Merge Risk: Low

This is a minor version upgrade for axios. The changes between v1.8.3 and v1.12.2 consist of bug fixes, security patches, and minor feature additions. No breaking changes are documented in this range.

Source: axios GitHub Releases

Notice 🤖: This content was generated using artificial intelligence. AI-generated content may contain errors and should be reviewed for accuracy before use.


Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
medium severity Allocation of Resources Without Limits or Throttling
SNYK-JS-AXIOS-12613773
666 Proof of Concept
Release notes
Package name: axios from axios GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade axios from 1.8.3 to 1.12.2.

See this package in npm:
axios

See this project in Snyk:
https://app.snyk.io/org/cognigy-gmbh/project/92bd593a-b4bf-439d-8778-29e930fdd262?utm_source=github&utm_medium=referral&page=upgrade-pr
@Copilot Copilot AI review requested due to automatic review settings October 6, 2025 01:24
Copy link
Contributor

@Copilot Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR upgrades the axios dependency from version 1.8.3 to 1.12.2 to address a security vulnerability (SNYK-JS-AXIOS-12613773) related to "Allocation of Resources Without Limits or Throttling." The upgrade spans 7 minor versions and includes bug fixes, security patches, and minor feature additions without breaking changes.

Key changes:

  • Security fix for resource allocation vulnerability
  • Bug fixes for fetch adapter, FormData handling, and TypeScript types
  • New features including improved error handling and JSON parsing support

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.

@graymalkin77
Copy link
Author

graymalkin77 commented Oct 6, 2025

🎉 Snyk checks have passed. No issues have been found so far.

security/snyk check is complete. No issues have been found. (View Details)

license/snyk check is complete. No issues have been found. (View Details)

code/snyk check is complete. No issues have been found. (View Details)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants