Skip to content

Comments

[deps] Bump follow-redirects version due to CVE-2024-28849 and CVE-2023-26159#310

Merged
jasongin merged 1 commit intojasongin:masterfrom
Kaniska244:master
Aug 25, 2025
Merged

[deps] Bump follow-redirects version due to CVE-2024-28849 and CVE-2023-26159#310
jasongin merged 1 commit intojasongin:masterfrom
Kaniska244:master

Conversation

@Kaniska244
Copy link
Contributor

Description:

The nvs contains a local instance of the follow-redirects v1.15.2 in the deps folder. This version is affected by the following vulnerabilities:

Link to related follow-redirects release: https://github.com/follow-redirects/follow-redirects/releases/tag/v1.15.6

Changelog:

  • The follow-redirects package updated to v1.15.6 (v1.15.2 -> v1.15.6)

@Kaniska244 Kaniska244 marked this pull request as ready for review August 25, 2025 10:03
@Kaniska244
Copy link
Contributor Author

Hello @jasongin

Would you kindly review this PR and let me know in case of any corrections.

With Regards,
Kaniska

@jasongin jasongin merged commit 6b20e9f into jasongin:master Aug 25, 2025
2 of 3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants