Skip to content

[2.4] Upgrade axios to 1.19.0 (CVE-2026-67313, CVE-2026-67314, CVE-2026-67320, CVE-2026-67321) - #838

Merged
jshaughn merged 1 commit into
kiali:v2.4from
jshaughn:CVE-2026-67313-axios-v2.4
Aug 18, 2026
Merged

jshaughn merged 1 commit into
kiali:v2.4from
jshaughn:CVE-2026-67313-axios-v2.4

Conversation

@jshaughn

Copy link
Copy Markdown
Contributor

Backport of #834 to v2.4.

Upgrade axios from 1.17.0 to 1.19.0.

Made with Cursor

Fixes CVE-2026-67313, CVE-2026-67314, CVE-2026-67320, and CVE-2026-67321.
Affected versions are <1.18.0; upgrade to 1.19.0 for parity with master.

Co-authored-by: Cursor <cursoragent@cursor.com>
@jshaughn
jshaughn requested a review from ferhoyos August 18, 2026 16:02
@jshaughn jshaughn self-assigned this Aug 18, 2026
@jshaughn jshaughn changed the title Upgrade axios to 1.19.0 (CVE-2026-67313, CVE-2026-67314, CVE-2026-67320, CVE-2026-67321) [2.4] Upgrade axios to 1.19.0 (CVE-2026-67313, CVE-2026-67314, CVE-2026-67320, CVE-2026-67321) Aug 18, 2026
@jshaughn

Copy link
Copy Markdown
Contributor Author

CI passed, force-merging since ferhoyos is away

@jshaughn
jshaughn merged commit 51b389d into kiali:v2.4 Aug 18, 2026
2 checks passed
@github-project-automation github-project-automation Bot moved this from 📋 Backlog to ✅ Done in Kiali Sprint 26-12 | Kiali v2.32 Aug 18, 2026
@jshaughn
jshaughn deleted the CVE-2026-67313-axios-v2.4 branch August 20, 2026 13:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Development

Successfully merging this pull request may close these issues.

1 participant